What problem does it solve?
Active Directory domain environments present a complex attack surface with misconfigurations, weak credentials, and trust relationships. This Skill provides an end-to-end methodology to discover domain information, enumerate users, and execute domain escalation techniques in a safe, documented manner for security testing and blue-team readiness.
Core Features & Use Cases
- Domain discovery and information gathering to map the AD topology and trust relationships.
- Credential abuse techniques including Kerberoasting, AS-REP Roasting, NTLM/Pass-the-Hash workflows, and DCSync scenarios.
- Delegation, ACL abuse, and ticket-based persistence paths (Golden/Silver Ticket, DCSync, Kerberoasting) for post-exploitation learning and defense hardening.
- Real-world playbooks and decision trees for adversary simulation and defense validation, suitable for security training and red-team readiness.
Quick Start
Run a lab-connected simulation of AD domain attack phases by loading the defined flow into the agent's context and executing the planned commands.