Active-Directory-Exploitation-Cheat-Sheet

AD exploit cheat sheet

A comprehensive guide to exploiting and enumerating Windows Active Directory environments through PowerShell

A cheat sheet that contains common enumeration and attack methods for Windows Active Directory.

GitHub

2k stars
77 watching
495 forks
Language: PowerShell
last commit: almost 2 years ago
Linked from 1 awesome list

active-directoryactive-directory-cheatsheetactive-directory-exploitationcheat-sheetcheatsheetenumerationexploitationhackinghacking-cheasheethacking-toolhacking-toolsinfosecpenetration-testingpentestingpowershellprivilege-escalationsecuritywindowswindows-active-directory

Backlinks from these awesome lists:

Related projects:

Repository Description Stars
s1ckb0y1337/active-directory-exploitation-cheat-sheet A comprehensive resource for exploiting and enumerating vulnerabilities in Windows Active Directory networks. 5,669
infosecn1nja/ad-attack-defense An interactive guide to understanding and defending against attacks on Active Directory networks. 4,421
byt3bl33d3r/deathstar Automates gaining Domain and/or Enterprise Admin rights in Active Directory environments using offensive TTPs 1,585
itm4n/privesccheck A PowerShell script that checks for local privilege escalation vulnerabilities on Windows systems. 2,976
cheat/cheat An interactive command-line cheatsheet generator and viewer 12,408
fox-it/aclpwn.py Exploits vulnerabilities in Active Directory due to misconfigured ACLs using Python and BloodHound 702
ly4k/certipy A tool for enumerating and abusing Active Directory Certificate Services 2,418
pedrib/poc Contains public advisories, exploits, and code related to vulnerabilities and hacking. 821
cloud-architekt/azuread-attack-defense A collection of attack scenarios and mitigation strategies for Microsoft Entra ID 2,149
deanofcyber/active-directory-penetration-testing-and-security A collection of resources and documentation for testing and securing Active Directory environments 30
oncybersec/oscp-enumeration-cheat-sheet A cheat sheet for conducting enumeration during penetration testing and security assessments 102
owasp/cheatsheetseries Provides concise security guidance for web application developers 28,160
orange-cyberdefense/goad An Active Directory pentest lab project providing a vulnerable environment for security testing and practice. 5,416
fuzzdb-project/fuzzdb A comprehensive toolset for identifying and exploiting application vulnerabilities through dynamic testing 8,242
curi0usjack/adimporter Tools for generating realistic test user accounts in Active Directory 69