Attacking Active Directory
Ctrlk
  • Reconnaissance
  • Exploiting With Poison and Relay
  • User Enumeration Exploit
    • setup /etc/hosts and kerberos
    • Exploiting Username - ASREPRoast
    • Password Spraying
    • User listing with GetADUsers and ldapsearch
    • Kerberoasting
    • Powerview
    • Enumerate Shares with User Account
  • Exploiting with Users
  • WSUS Exploit
  • Active Directory Certificate Services (ADCS)
  • Metasploit
  • Privilege Escalation
  • User ACL Exploits
  • MSSQL servers Exploitation
  • Delegations
  • Trust
  • Exploiting IIS & Privilege escalation
  • Impacket
Powered by GitBook
On this page

User Enumeration Exploit

setup /etc/hosts and kerberosExploiting Username - ASREPRoastPassword SprayingUser listing with GetADUsers and ldapsearchKerberoastingPowerviewEnumerate Shares with User Account
PreviousCoerced auth smb + ntlmrelayx to ldaps with drop the micNextsetup /etc/hosts and kerberos

Last updated 2 years ago