network-attack

Plan and execute Active Directory penetration testing workflows with Cyber Kill Chain alignment.

338|59|Updated May 19, 2026
One-click install
npx skills add https://github.com/hypnguyen1209/offensive-claude --skill network-attack
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: network-attack
Source: https://github.com/hypnguyen1209/offensive-claude/tree/main/skills/network-attack
Command: npx skills add https://github.com/hypnguyen1209/offensive-claude --skill network-attack

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill provides a structured approach for network penetration testing and lateral movement simulation within enterprise environments, including Active Directory enumeration, credential harvesting, and pivoting techniques to assess security controls.

Core Features & Use Cases

  • Active Directory attacks: enumeration, credential access, and escalation paths to test defenses.
  • Lateral movement & pivoting: techniques to traverse networks, control channels, and simulate attacker movement.
  • Protocol and network attacks: coverage of ARP spoofing, SMB, LDAP, Kerberos, and NTLM relay chains to evaluate detections and controls.
  • Use Case: Red-team exercises or blue-team training to validate detections, response playbooks, and containment strategies.

Quick Start

Begin by defining the engagement scope for the target network, then run recon, weaponize, exploit, install, and report phases in a controlled lab or authorized environment.

Frequently Asked Questions about network-attack

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I plan a network penetration testing workflow for Active Directory environments?

Network penetration testing for Active Directory requires defining engagement scope, then executing recon, weaponize, exploit, install, and report phases. This Cyber Kill Chain-aligned workflow guides assessments by simulating lateral movement and AD compromise.

What is lateral movement simulation and how does it evaluate security controls?

Lateral movement simulation is the process of traversing networks and control channels to mimic attacker movement within an enterprise. It evaluates security controls by testing techniques like credential dumping and pivoting to assess detection and containment strategies.

Can I use this to simulate Active Directory attacks like Kerberos and NTLM relay chains?

Yes, you can simulate Active Directory attacks using this skill. It provides structured techniques and tooling references for exploiting Kerberos, NTLM relay chains, LDAP, and SMB protocols to evaluate enterprise security defenses.

What's the best way to test credential harvesting and escalation paths in Windows?

The best way to test credential harvesting and escalation paths in Windows is following a Cyber Kill Chain-aligned workflow. This approach covers Active Directory enumeration and credential access to validate security defenses and response playbooks.

Does this network attack skill support red-team exercises and blue-team training?

Yes, this network attack skill supports red-team exercises and blue-team training. It helps validate detections, response playbooks, and containment strategies by simulating realistic network vulnerabilities and attacker movement in a controlled lab.

When should I not use a Cyber Kill Chain-aligned network pen-testing playbook?

You should not use a network pen-testing playbook outside authorized environments. It must be strictly limited to controlled labs or explicitly defined engagement scopes to prevent unintended lateral movement or AD compromise during security assessments.