Skip to content

AD & Enterprise Security

Active Directory attack paths, protocol abuse, and cert-service misconfig.

Impacket

venv

The reference library/scripts for Windows protocol abuse (SMB, Kerberos, DCOM…).

Certipy

venv

Finds and abuses AD Certificate Services (ESC1-style) misconfigurations.

BloodHound CE

compose

Maps AD attack paths graphically. Ships as a Docker stack upstream, not a binary.

Mimikatz

staged

Credential extraction from Windows memory — staged, Windows-only.

PingCastle

staged

AD security/risk-assessment scoring — staged, Windows-only.

AD Explorer

staged

Sysinternals' AD viewer/snapshot tool — staged, Windows-only.