ad-pentest
Installation
SKILL.md
What this skill does
Performs a structured Active Directory penetration test across six phases: unauthenticated enumeration, authenticated enumeration with BloodHound, credential attacks (Kerberoasting, AS-REP Roasting, NTLM relay), privilege escalation via ACL abuse and ADCS misconfigurations, lateral movement, and domain dominance. Produces a findings report with attack paths and remediation guidance.
AUTHORIZED TESTING ONLY. All techniques in this skill are for use exclusively in environments where written authorization has been obtained. Unauthorized use is illegal.
When to use
- When performing an authorized internal penetration test of a Windows/AD environment
- When assessing AD attack surface for a red team or security review engagement
- When validating defensive controls (tiering, LAPS, Protected Users, Credential Guard)
- When generating BloodHound attack path data for remediation prioritization
Prerequisites
# Python-based tools (run in authorized testing environment)
pip install impacket ldapdomaindump bloodhound certipy-ad crackmapexec