Lab Environments
GOAD (Game of Active Directory)
Complex vulnerable Active Directory lab for realistic AD attacks.
Authorized testing only. Practice on systems you own, isolated labs, or targets with written permission. Unauthorized access is illegal.
When
Ready to practice BloodHound paths, trusts, and AD tradecraft.
How
Deploy with provided automation; attack from Kali; document paths.
Why
Best free-style AD playground for serious learners.
Commands & usage
# Follow orange-cyberdefense/GOAD docs
Commands are educational examples. Adapt hosts, paths, and rates to your authorized scope.
Tags
Related in Lab Environments
Metasploitable 2/3
Intentionally vulnerable Linux/Windows VMs for exploit practice.
DVWA
Damn Vulnerable Web Application for learning OWASP bugs.
OWASP Juice Shop
Modern insecure web app with gamified challenges.
OWASP WebGoat
Deliberately insecure app teaching common web flaws lesson-by-lesson.
VulnHub
Free downloadable vulnerable machines for offline practice.
Hack The Box
Online pentest labs with machines, challenges, and careers path.