Maintenance in progress: we are indexing a large batch of new skills. Some pages may load slowly or briefly show no results. Nothing is lost, and everything is back to normal within the hour.

Pentest

Network/infrastructure penetration testing with AD attacks

majiayu000 a337996 2 files · 1.7 KB Updated 567 repo stars

File contents

Penetration Testing

Run authorized network penetration tests including:

  • Host discovery and port scanning
  • Service enumeration
  • Password attacks (spray, brute force)
  • Exploitation and initial access
  • Post-exploitation and privilege escalation
  • Lateral movement
  • Active Directory attacks
  • Persistence mechanisms

Required Context

When invoking, provide:

  1. Scope: IP ranges, domains, restrictions
  2. Authorization: SOW/LOA reference
  3. Objectives: Domain admin, specific systems, data access
  4. Constraints: No DoS, testing windows, etc.

Tools Used

nmap, masscan, crackmapexec, impacket, bloodhound, evil-winrm, mimikatz, responder, hydra, hashcat

Example

/pentest
Scope: 10.0.0.0/24, domain.local
Authorization: SOW-2024-001
Objective: Achieve domain admin

majiayu000/claude-skill-registry-data/tree/main/security/pentest commit a33799605a

Frequently asked questions

npx skillmds add majiayu000/pentest