Attacking Active Directory
search
⌘Ctrlk
Attacking Active Directory
  • Reconnaissance
  • Exploiting With Poison and Relay
  • User Enumeration Exploit
    • setup /etc/hosts and kerberos
    • Exploiting Username - ASREPRoast
    • Password Spraying
    • User listing with GetADUsers and ldapsearch
    • Kerberoasting
    • Powerview
      • Setting Up PowerView
      • Get-NetUser
      • Get-NetGroup
      • Get-NetComputer
      • Get-NetFileServer
      • Get-NetGPO
      • Get-ObjectAcl
      • Get-NetDomainTrust
      • Invoke-Portscan
    • Enumerate Shares with User Account
  • Exploiting with Users
  • WSUS Exploit
  • Active Directory Certificate Services (ADCS)
  • Metasploit
  • Privilege Escalation
  • User ACL Exploits
  • MSSQL servers Exploitation
  • Delegations
  • Trust
  • Exploiting IIS & Privilege escalation
  • Impacket
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. User Enumeration Exploit

Powerview

Setting Up PowerViewchevron-rightGet-NetUserchevron-rightGet-NetGroupchevron-rightGet-NetComputerchevron-rightGet-NetFileServerchevron-rightGet-NetGPOchevron-rightGet-ObjectAclchevron-rightGet-NetDomainTrustchevron-rightInvoke-Portscanchevron-right
PreviousKerberoastingchevron-leftNextSetting Up PowerViewchevron-right

Last updated 2 years ago