Skip to main content
SSSAM Academy
SSSAM AcademyCyber Security with AI
Core Pedagogy • 60+ Hands-on Exercises

60+ Guided Hands-on Practical Cybersecurity Labs

We believe cybersecurity is learned at the command line, not through passive slides. Explore our 6 practical domains spanning network packet inspection, Linux system hardening, authorized ethical testing, and modern AI threat investigation.

Network DefenseLinux BastionEthical TestingSOC DetectionAI Prompt Defense
Pedagogical Framework

How Our Guided Practical Labs Work

Every lab is designed as an applied technical scenario rather than an abstract test, progressing through structured briefing, tool execution, and defensive validation.

01

Threat Scenario Briefing

Before running any commands, students review the network topology, active vulnerability context (CVE/OWASP), and concrete defensive or assessment objectives.

02

Hands-on Tool Execution

Execute real commands in live environments using Wireshark, Linux CLI, Nmap, Splunk, or Python. Analyze packet streams, inspect daemons, and trace event logs.

03

Defensive Validation & Triage

Verify mitigations by authoring detection rules (Snort/YARA), hardening configurations, and writing structured Level 1 incident summaries following industry formats.

Dual Access Infrastructure

Access Labs in Browser or on Dedicated Center Workstations

Regardless of whether you study online across India or in-person at our Sector 14 Gurugram academy center, you work in identical pre-configured tool ecosystems.

Live Online Track (Pan-India)Browser Sandboxes

Cloud Sandbox Environments

Connect directly through your web browser with zero high-spec hardware or complex local hypervisors required. Practice from anywhere in India with low latency.

Classroom Track (Sector 14 Gurugram)Dedicated PCs

Physical Hardware Lab Workstations

Work on dedicated individual workstation PCs at our Gurugram center loaded with Kali Linux, local network taps, and face-to-face whiteboard architecture instruction.

Curriculum Distribution

6 Comprehensive Practical Lab Domains

Our 60+ guided practical labs are systematically structured across six critical cybersecurity disciplines to build well-rounded operational capabilities.

Network Defense14 Labs

Network Defense & Packet Analysis

Deep packet inspection, protocol decoding, firewall rule authoring, and anomaly hunting using Wireshark, Zeek, and Snort.

Guided Scenario FormatActive Lab Module
System Hardening12 Labs

Linux Systems & Bastion Hardening

Linux CLI fluency, user privilege controls, SSH bastion configuration, daemon management, and auditd log monitoring.

Guided Scenario FormatActive Lab Module
Ethical Hacking12 Labs

Ethical Hacking & Web Security Testing

Authorized reconnaissance, Nmap network scanning, OWASP Top 10 web vulnerabilities auditing, and Burp Suite request tampering.

Guided Scenario FormatActive Lab Module
SOC Detection10 Labs

SOC Operations & SIEM Incident Triage

Event log hunting in Splunk, Windows Event & Sysmon correlation, alert prioritization, and incident containment reporting.

Guided Scenario FormatActive Lab Module
Cloud Security6 Labs

Cloud Security & Perimeter Defense

Cloud sandbox architecture, IAM least-privilege policies, security group configurations, and perimeter defense analysis.

Guided Scenario FormatActive Lab Module
AI Threat Defense8 Labs

AI in Cyber Defense & Prompt Security

AI-assisted telemetry summarization, automated query generation, prompt injection risk testing, and LLM guardrail architecture.

Guided Scenario FormatActive Lab Module
Hands-on Catalog Sample

Sample Hands-on Practical Lab Scenarios

Inspect a curated preview of representative lab modules from our complete 60+ lab catalog. Each exercise features active command-line objectives, verified toolchains, and concrete defensive takeaways.

Lab #01Intermediate

Network Packet Inspection & C2 Beacon Analysis

Detect anomalous outbound beaconing from a compromised enterprise endpoint using deep packet inspection.

Terminal Simulation
$ zeek -r breach_sample.pcap local && cat notice.log
[ALERT] Notice::Scan_Summary: 192.168.1.45 port scan detected on 10.0.0.0/24
Est. Duration: 60 minsApplied Hands-on
Tools:WiresharkZeekTcpdump
Lab #02Intermediate

SIEM Incident Detection & Splunk SPL Log Hunting

Correlate Windows Event 4688 process creation logs with Sysmon Event 1 to trace a PowerShell Empire stager.

Terminal Simulation
$ index=windows EventCode=1 Image="*powershell.exe" | stats count by CommandLine
1 match: powershell.exe -NoP -NonI -W Hidden -Enc SQBFAFgA...
Est. Duration: 75 minsApplied Hands-on
Tools:SplunkSysmonElastic
Lab #03Advanced

Adversarial Prompt Injection & LLM Guardrail Bypass

Test enterprise AI customer support assistant against direct and indirect prompt injection attacks.

Terminal Simulation
$ python test_guardrails.py --target llm-agent --attack indirect_injection
[BYPASS DETECTED] System prompt leaked: "You are an internal admin agent..."
Est. Duration: 90 minsApplied Hands-on
Tools:PythonGarakLangChain Security
Lab #04Foundational

Web Application Pentesting & SQLi Exploit Analysis

Exploit blind SQL injection vulnerability on vulnerable login interface and capture defensive logs.

Terminal Simulation
$ sqlmap -u "http://lab.sssam.local/login" --data="user=admin&pass=x" --dbs
[INFO] retrieved 3 databases: [information_schema, sssam_app, users]
Est. Duration: 45 minsApplied Hands-on
Tools:Burp SuiteSQLMapOWASP ZAP
Lab #05Intermediate

Linux SUID Misconfiguration & Privilege Hardening

Audit Linux server file permissions to identify unauthorized SUID binaries and implement least-privilege remediation.

Terminal Simulation
$ find / -perm -4000 -type f -exec ls -la {} 2>/dev/null \;
-rwsr-xr-x 1 root root /usr/local/bin/custom_backup (insecure SUID)
Est. Duration: 60 minsApplied Hands-on
Tools:Linux CLIAuditdBash
Lab #06Foundational

Network Port Scanning & Service Fingerprinting

Conduct stealth SYN scans across isolated target subnet and identify exposed unpatched network services.

Terminal Simulation
$ nmap -sS -sV -p 21,22,80,443,3389 -T4 10.10.10.0/24
Port 21/tcp OPEN vsftpd 2.3.4; Port 80/tcp OPEN Apache 2.4.41
Est. Duration: 50 minsApplied Hands-on
Tools:NmapNetcatTcpdump
Lab #07Intermediate

Cloud IAM Policy Misconfiguration & Least Privilege Audit

Identify wildcard permissions ("Action": "*") in cloud access policies and restructure roles for zero trust.

Terminal Simulation
$ prowler aws --check iam_policy_allows_all_actions
[FAIL] Policy AppRolePolicy allows Action: * on Resource: *
Est. Duration: 70 minsApplied Hands-on
Tools:AWS CLI / LocalStackCloudTrailProwler
Lab #08Foundational

AI Log Triage & Automated Incident Summary Generation

Author automated prompt pipeline to parse 10,000+ firewall denial logs and extract prioritized security anomalies.

Terminal Simulation
$ python triage_pipeline.py --input firewall.log --model security-assistant
[SUMMARY] Top Threat: Repeated SSH brute force from ASN 45102 (1,420 attempts)
Est. Duration: 55 minsApplied Hands-on
Tools:PythonOpenAI/Local LLM APISyslog
Curriculum Scope: The scenarios above represent a sample of the full 60+ guided practical labs completed throughout the program. All exercises run in safely isolated lab sandboxes with zero live operational risks.
Experience a Guided Demo Lab

Test Drive a Practical Lab Session Before You Enroll

Join an instructor for a live 60-minute practical session. Experience how we guide packet analysis in Wireshark and test our browser-based cloud sandboxes and Gurugram workstation environments firsthand.

Live network breach simulation & packet decode walkthrough
Test your browser cloud sandbox connection or Gurugram classroom seat
100% free with zero financial obligation
Free Technical Demo

Reserve Your Free Demo Lab Seat

Choose your preferred format: Live Online across India or Sector 14 Gurugram Classroom.

10 digits
🇮🇳 +91
60+ Guided Labs•No Upfront Fee•Mentor-Led