AI-Powered Cyber Training

Test your team before
the real attack hits.

Adversary X delivers AI-driven cyber incident tabletop exercises built around real threat actors, documented attacks, and UK regulatory context.

Plans from £999/year
adversary-x.com
Turn 2/6
CRITICAL
Situation report — Containment
Forensic analysis confirms the attacker deployed SUNBURST-variant malware via the SolarWinds Orion update pipeline. Lateral movement is confirmed across 4 domain controllers. EDR telemetry shows T1078 (Valid Accounts) and T1021.002 (SMB Remote Services) activity...
A
Isolate affected domain controllers
Forces attacker out but risks service disruption across the estate.
B
Continue passive monitoring
Gathers more intelligence but allows further lateral movement.
C
Notify ICO and engage NCSC
Initiates regulatory process but may alert attacker to detection.
19 APT profiles with MITRE ATT&CK mapping
UK regulatory context throughout
Based on documented real-world incidents
Scored debrief with PDF report

Everything your team needs
to practise under pressure

From initial detection to post-incident debrief, Adversary X puts your team through a complete incident response cycle with AI-driven consequences at every turn.

AI-driven exercise engine
The AI models real threat actor behaviour across 6 decision turns, responding dynamically to your team's choices. No two exercises play out the same way.
🎯
19 APT profiles
Model attacks from APT29, Lazarus Group, LockBit, and 16 more threat groups — each with full MITRE ATT&CK TTP mapping woven into the scenario narrative.
📰
Real World Attacks library
Play through 9 documented incidents — M&S 2025, NHS Synnovis, British Library, MOVEit, and more — with the actual threat actor and attack chain.
📋
Scored debrief & PDF report
Every exercise ends with a scored debrief covering strengths, improvements, UK regulatory obligations, attribution notes, and a tailored defensive checklist.

Train on attacks that already happened

Each scenario is grounded in a documented incident. The threat actor is pre-paired. The attack timeline is real. Your team's decisions are the variable.

Scenarios are based on publicly reported information. Rexon Cyber Security has no affiliation with the organisations named and does not claim access to non-public incident details.

M&S Cyber Attack · 2025 Critical
Marks & Spencer Ransomware Incident
Retail
Threat actor: Scattered Spider
NHS Synnovis · 2024 Critical
NHS Blood Services Ransomware Attack
Healthcare
Threat actor: Qilin
British Library · 2023 High
British Library Ransomware Attack
Public Sector
Threat actor: Rhysida
+ 6 more incidents in the library

Simple, transparent pricing

Annual billing. No hidden fees. Cancel anytime.

Basic
£999/year
£83/month equivalent
6 built-in cyber scenarios
All 19 APT profiles
MITRE ATT&CK integration
Exercise scoring & debrief
Standard PDF reports
Real World Attacks
Custom scenario builder
Enhanced PDF reports
Enterprise
POA
Contact us for a tailored quote
Everything in Pro
Stats dashboard
White-label PDF
BYOK API key
Dedicated onboarding
Multiple roles Coming soon

Ready to stress-test your team?

Get started today. Your first exercise takes less than 5 minutes to set up.

Already have an account?
Real World Attacks
Based on documented incidents with threat actors pre-paired and an attack timeline simulated on the real incident.
M&S Cyber Attack · 2025 Critical
Marks & Spencer Ransomware Incident
Retail
Threat actor: Scattered Spider
NHS Synnovis · 2024 Critical
NHS Blood Services Ransomware Attack
Healthcare
Threat actor: Qilin
British Library · 2023 High
British Library Ransomware Attack
Public Sector
Threat actor: Rhysida
Royal Mail · 2023 Critical
Royal Mail International Shipping Attack
Logistics
Threat actor: LockBit
+ 5 more incidents available after sign-in — including MOVEit, SolarWinds, Colonial Pipeline and more
Ready to run your first exercise?
Sign in to access the full library and start a scenario in under 5 minutes.