Attacking Active Directory
search
⌘Ctrlk
Attacking Active Directory
  • Reconnaissance
  • Exploiting With Poison and Relay
  • User Enumeration Exploit
  • Exploiting with Users
  • WSUS Exploit
  • Active Directory Certificate Services (ADCS)
  • Metasploit
  • Privilege Escalation
  • User ACL Exploits
  • MSSQL servers Exploitation
  • Delegations
  • Trust
    • Enumerate Trust
    • Domain Trust - child/parent (north.newyork.local -> newyork.local)
      • RaiseMeUp - Escalate with impacket raiseChild
      • Golden ticket + ExtraSid
      • Trust ticket - forge inter-realm TGT
    • Forest Trust (newyork.local -> maryland.local)
  • Exploiting IIS & Privilege escalation
  • Impacket
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. Trust

Domain Trust - child/parent (north.newyork.local -> newyork.local)

RaiseMeUp - Escalate with impacket raiseChildchevron-rightGolden ticket + ExtraSidchevron-rightTrust ticket - forge inter-realm TGTchevron-right
PreviousEnumerate Trustchevron-leftNextRaiseMeUp - Escalate with impacket raiseChildchevron-right

Last updated 2 years ago