Skip to content
HackIndex logo

HackIndex

LDAP
Service

LDAP

LDAP directory service attacks covering anonymous binds, injection, enumeration of users and groups, relay attacks, credential extraction, and leveraging AD trust paths for lateral movement

:389 :636 13 guides 3 phases
1 min read Updated: Jul 13, 2026

What is LDAP?

LDAP (Lightweight Directory Access Protocol) is used to manage directory information like users and groups.

Common security issues

  • Anonymous binds allowed.

  • User enumeration.

  • Cleartext authentication.

  • Excessive ACL permissions.

Default ports

  • 389 – LDAP

  • 636 – LDAPS

Enumeration

Enumerate LDAP via anonymous and auth binds, users, groups, misconfigs

5

LDAP Authenticated User Group Enumeration

Enumerate Active Directory user groups via authenticated LDAP queries using tools like ldapsearch, BloodHound, and PowerView to map privilege relationships.

Jan 4, 2026 6 min read

Vulnerability Discovery

Guides on finding LDAP misconfigs via null bind, signing, and relay checks

2

Exploitation

Anonymous bind, injection, pass-back, brute force, and credential extractio

6
LDAP Brute Force and Password Spraying

LDAP Brute Force and Password Spraying

Exploit LDAP authentication via brute force and password spraying techniques to enumerate valid credentials against directory services.

Mar 11, 2026 4 min read