This skill transforms an agent into an expert Active Directory security assessor. It provides a structured methodology for auditing AD environments to find misconfigurations, dangerous permissions, and privilege escalation paths.
Use this skill when performing internal network penetration tests or security audits of Windows domain environments, specifically when you have initial credentials and need to map the domain or escalate privileges.
enum4linux-ng, netexec, impacket, certipy-ad, and bloodhound-python.Designed for agents with access to a Kali Linux environment or similar pentesting toolset (e.g., Claude Code, opencode).
This skill has not been reviewed by our automated audit pipeline yet.
Kerberoasting Active Directory
Execute Kerberoasting attacks to extract and crack SPN ticket hashes for privilege escalation in Active Directory.
BOLA & IDOR Hunting
Advanced methodology for detecting Broken Object Level Authorization and Insecure Direct Object References in APIs.
Active Directory Kerberos Attack Playbook
Expert-level guide for executing Kerberos-based attacks in AD environments, including roasting, ticket forging, and delegation abuse.