Valid Credentials
Get all the users
Enumerate SMB Shares
BloodHound
PowerView
Get Domain Information
Get User List
Get a specific User
Enumerate Password Change && Last Login
Get Groups
Get a specific Group
List Domain Shares
Get Computers
Check if we are ADMIN on other Computers
Check for Logged Users
Enumerate ACL
Kerberoasting
Get Kerberoastable users
Get Hash
ADCS Enumeration
Exploit
If we found known vulnerabilities you should exploit them for compromising more systems:
Connect to computers
WinPeas
Upload WinPeas for more in depth enumeration
LDAP
Change User Password
If we got "STATUS_PASSWORD_MUST_CHANGE" for some users, we can update a current password to a new one.
Last updated