What problem does it solve?
Replaces ad-hoc tool chaining with a centralized orchestrator that sequences available AD pentest tooling to reproduce ADscan-like workflows, saving time and reducing manual coordination.
Core Features & Use Cases
- Centralized orchestration of the AD pentest toolchain (NetExec, Impacket, BloodHound, Certipy, Responder, hashcat, Kerbrute, SMBMap, Snaffler) to reproduce ADscan-like workflows.
- Supports discovery, credential validation, BloodHound collection, AD CS checks, SMB share analysis, relay/cracking workflows, and structured evidence logging for reproducibility.
- Example: Given a local toolset, generate a minimal viable engagement flow that enumerates domain users and derives lineage paths while recording commands and outputs for auditing.
Quick Start
Run the adscan skill in a per-engagement workspace to detect locally available AD pentest tooling and initialize the smallest viable discovery workflow.