Skip to main content Link Menu Expand (external link) Document Search Copy Copied

ad / bookmarks

RessourceDescriptionAuthor
Attack AD: 0 to 0.9The encyclopedia to start your journey in AD security. My TOP 1.Eloy Pérez González
Bloodhound NodesMust-read to understand AD attack paths.SperterOps
Bloodhound EdgesMust-read to understand AD attack paths.SpecterOps
thehacker.recipespages after /ad/movement/ : credentials, mitm-and-coerced-authentications, ntlm, kerberos, dacl, group-policies, trusts, netlogon, ad-cs, sccm-mecm, exchange-services, print-spooler-service, domain-settings@_nwodtuhs
CERT-FR checklist ANSSI
CME wikiFirst thing first. Can I make it with CME?porchetta, mpgn64
GOAD tutorialBest to practice, prepare tooling.mayfly277
activedirectoryrightsList of ActiveDirectoryRights values.Microsoft
well-known SIDsList of Well-Known SIDs.Microsoft
SDDLUnderstand ACE premissions. 
Attack bookmarksCurated list to deepdive a particluar topic.infosecn1nja
Dog WhispererHow-to for Bloodhound and more.SadProcessor
Cypher QueriesHunting with BloodHound. STEP 2 after the pre-built queries.hausec
KRB Attacks 101Good redacting effort.m0chan
harden  
harden  

azure

dfir

CheatsheetDescriptionAuthor
Hunting Windows PrivEscAwesome presentation covering how to hunt the named pipes and much more.Kaspersky
Windows Logon workflowAwesome schema sequencing the security event IDs for windows logon.Andrei Miroshnikov

powershell

RessourceDescriptionAuthor
AD Discovery-Haboob Team
AD ExploitationContains the CLI of the most well-known tools for common enumeration and attack methods: Local PrivEsc, Lateral Movement, Domain PrivEsc, Domain Persistence, Cross Forests AttacksS1ckB0y1337
PS cheatsheet 1The best CRTP + CRTO cheatsheet for lab certifications made by pentesteracademy.casvancooten
PS cheatsheet 2PowerView, PowerUp, PowerSploit, and Empire cheatsheets.HarmJ0y
PS toolbox 1Tools used for the offensive powershell training provided by specterops.specterops.io
PS toolbox 2Collection of tools.varonis
PS snippet gallerySnipets.powershellgallery
PS old stuffs-ethicalhackersacademy

talks

YearRessourceAuthorDescription
2017 (blackhat)An ACE Up The SleeveAndy Robbins & Will ShroederAbusing ACLs…
2019 (defcon 27)Kerberos Ticketing & DelegationsElad Shamir, Matt BushWorkshop using rollercoaster metaphor for explaining KRB ticket and abuse.