RFC - Offensive Security Notes
CtrlK
  • Active Directory
    • Enumeration
      • Active Directory Module
      • PowerView 3.0
      • Verify connectivity to domain controller
      • WMI domain enumeration through root\directory\ldap
      • PAM Trust
      • DNS discovery
    • Privilege Escalation
    • Persistence
  • Initial Access
    • VBA Macros
  • Discovery
    • Juicy files
    • Network Enumeration
  • Execution
    • WMI
    • PowerShell
    • C# .Net Assembly
    • ReverseShells
    • Metasploit
  • Exploitation
    • Win32 APIs
  • Credential Access
    • Microsoft Windows
  • Lateral Movement
    • Windows Lateral Movement
    • Linux Lateral Movement
  • Persistence
  • Defence Evasion
    • Antimalware Scan Interface (AMSI)
    • PowerShell
    • Microsoft Defender
    • Anti-virus evasion
    • AppLocker
  • Network Pivoting
    • Proxies and port fowarding
    • Network discovery and scanning
  • Exfiltration
    • Windows
  • Services
    • MS SQL Server
  • Misc
    • CrackMapExec
    • Cheat sheets
  • Cloud
    • Azure
Powered by GitBook
On this page
  1. Active Directory

Enumeration

Active Directory ModulePowerView 3.0Verify connectivity to domain controllerWMI domain enumeration through root\directory\ldapPAM TrustDNS discovery
NextActive Directory Module

Last updated 7 months ago