
Red Team Cheatsheet in ständiger Erweiterung.

Du kannst mich hier unterstützen 🐱 :
Dieses AD-Angriffs-CheatSheet, erstellt von RistBS, ist inspiriert vom Active-Directory-Exploitation-Cheat-Sheet-Repository.
Powershell-Tools :
[⭐] Nishang -> https://github.com/samratashok/nishangNishang hat mehrere nützliche Skripte für Windows-Pentesting in der Powershell-Umgebung.
PowerView ist ein Skript aus PowerSploit, das die Enumeration der AD-Architektur für einen möglichen Lateral Movement ermöglicht.
Enumerationswerkzeuge :
[⭐] Bloodhound -> https://github.com/BloodHoundAD/BloodHound[⭐] crackmapexec -> https://github.com/byt3bl33d3r/CrackMapExeAD-Exploitation-Toolkit :
[⭐] Impacket -> https://github.com/SecureAuthCorp/impacket[⭐] kekeo -> https://github.com/gentilkiwi/kekeoDumping-Tools :
[⭐] mimikatz -> https://github.com/gentilkiwi/mimikatz[⭐] rubeus -> https://github.com/GhostPack/RubeusListener-Tool :
[⭐] responder -> https://github.com/SpiderLabs/ResponderPS-Session :```powershell #METHOD 1 $c = New-PSSession -ComputerName 10.10.13.100 -Authentication Negociate -Credential $user Enter-PSSession -Credential $c -ComputerName 10.10.13.100
$pass = ConvertTo-SecureString 'Ab!Q@aker1' -asplaintext -force $cred = New-Object System.Management.Automation.PSCredential('$user, $pass') Enter-PSSession -Credential $c -ComputerName 10.10.13.100
### PSWA Missbrauch
erlaubt jedem mit Anmeldedaten, sich mit jeder Maschine und jeder Konfiguration zu verbinden
**[ ! ] Diese Aktion erfordert Anmeldedaten.**```powershell
Add-PswaAuthorizationRule -UsernName * -ComputerName * -ConfigurationName *