Built a local Active Directory lab environment to simulate real-world attacks such as Kerberoasting, Pass-the-Hash, and Privilege Escalation. Documented attack steps and created a guide for basic hardening measures.