What problem does it solve?
Identifies and prioritizes Active Directory attack paths, credential weaknesses, ADCS misconfigurations, and lateral movement opportunities to produce actionable findings and remediation guidance for enterprise Windows domains.
Core Features & Use Cases
- Structured six-phase assessment covering unauthenticated enumeration, authenticated BloodHound collection, credential attacks, ADCS/ACL privilege escalation analysis, lateral movement checks, and consolidated reporting.
- Tool orchestration and guidance for BloodHound, certipy, impacket, crackmapexec, kerbrute, and Responder to capture evidence and generate prioritized attack paths.
- Use Case: Conduct an authorized internal pentest to discover Kerberoastable accounts, ADCS ESC issues, and shortest paths to Domain Admins, then produce a remediation-focused report.
Quick Start
Run the ad-pentest workflow to perform a six-phase Active Directory assessment and generate a consolidated findings report.