Methodology
This Page shows the Complete methodology for Active Directory Pentesting
Enumerating AD Environment
Listing Shares on Windows
## view the shares
net view \\Computername.abc.corp
## List the Shares
dir \\computer-name.abc.corp Impacket-SmbServer to Host Files
impacket-smbserver -smb2support -user test -password test share $(pwd)
### without password
impacket-smbserver -smb2support share $(pwd) net use \\IP_add_of_kali\shareTurn AV off
PowerView Enumerating Basic Stuff
Enumerate AD Users
Enumerating AD Computers
Enumerating Domain Admins Group
Enumerating Domain Admins Group Members
Enumerating Enterprise Admins Group Members
PowerView Enumerating Advanced
Enumerating ACL's
Enumerating Organizational Unit (OU)
Tools and Commands
Powerup.ps1
Bloodhound-python
Rubeus Commands.
Runas Command
PS-Session and Cred Object
Silver Ticket Attack
Last updated