Ad Postexploitation

Active Directory post-exploitation skill — covers everything after gaining initial access to a Windows domain environment. Activate when the user has valid domain credentials, a shell on a domain-joined machine, or escalated privileges and wants to: move laterally across the network, escalate to Domain Admin, harvest credentials from memory or disk, establish domain persistence, dump LSASS, abuse privilege tokens, or pivot through the domain. Also activate for: pass-the-hash, pass-the-ticket, Mimikatz, LSASS dump, token impersonation, SAM dump, scheduled task persistence, Skeleton Key, Diamond Ticket, AdminSDHolder, or any post-compromise AD activity.

DouglasRao Updated

File contents

DouglasRao/Claude-Pentest-Skills/tree/main/skills/ad-postexploitation commit aef15a3fdf

Frequently asked questions

npx skillmds@latest add douglasrao/ad-postexploitation