attacking-active-directory

Installation
SKILL.md

Attacking Active Directory

When to Use

  • AD reconnaissance and enumeration
  • Kerberos-based attacks
  • Credential dumping from domain controllers
  • Lateral movement within domains
  • BloodHound attack path analysis
  • Domain persistence techniques

When NOT to Use

  • Non-Windows / Linux-only environments — use enumerating-network-services
  • Cracking the hashes you collected — use cracking-passwords
  • Post-domain-compromise persistence — use establishing-persistence
  • Entra ID / Azure AD as the primary target — use attacking-entra-id
  • Detecting these attacks defensively — use engineering-detections
Installs
69
GitHub Stars
146
First Seen
Jan 29, 2026
attacking-active-directory — trilwu/secskills