What problem does it solve?
This Skill provides expert techniques to exploit misconfigured Active Directory permissions, such as GenericAll, WriteDACL, DCSync rights, shadow credentials, LAPS reading, GPO abuse, and BloodHound-guided attack paths.
Core Features & Use Cases
- BloodHound Enumeration: Utilizes BloodHound for complex AD permission enumeration and attack path discovery.
- ACE-Specific Exploitation: Focuses on the exploitation of dangerous Access Control Entries (ACEs) in AD.
- DCSync Attack: Executes DCSync to dump all hashes from the domain controller.
- Shadow Credentials: Exploits shadow credentials for targeted Kerberoasting and password resets.
- LAPS Password Reading: Extracts LAPS passwords from domain computers.
- GPO Abuse: Abuses Group Policy Objects (GPOs) to add local admins or execute commands on domain controllers.
- Use Case: For example, if a domain user has generic write permissions on a domain object, this Skill can be used to exploit these permissions and escalate privileges within the domain.
Quick Start
Run the active-directory-acl-abuse skill to enumerate and exploit ACL misconfigurations in your Active Directory.