What problem does it solve?
This solution provides a structured, repeatable AD penetration testing workflow that guides practitioners from initial recon to final reporting, including automated state tracking and evidence gathering.
Core Features & Use Cases
- 6-phase gated workflow for domain-joined Windows environments, covering recon, credential harvest, Kerberos attacks, relay/delegation, privilege escalation, and reporting
- Built-in state management and artifacts (state.yaml, scope.md, phase outputs, findings log) to ensure reproducibility and auditability
- References and scripts to perform deterministic tasks and on-demand information retrieval during engagements
Quick Start
Initialize a new AD pentest engagement with domain, DC IP, and target scope, then advance phases by following gate checks and recording evidence.