Active Directory:
Post-Exploitation
AD post-exploitation: enum trusts, dump creds, abuse domain trusts
Credential Harvesting
Techniques for extracting credentials from AD environments post-compromise, covering LSASS dumping, DCSync attacks, and Kerberoasting for lateral movement.
Cross-Forest Trust Abuse
Exploiting Active Directory cross-forest trust relationships to escalate privileges, move laterally, and access resources across trusted forest boundaries.
Domain Trust Abuse
Techniques for abusing AD domain trust relationships to escalate privileges, move laterally across forests, and compromise linked domains via ticket attacks.
Situational Awareness
Enumerating AD objects, trusts, ACLs, and privilege paths post-compromise to map attack surface and identify lateral movement or escalation opportunities.