πŸ§‘β€πŸ’»
B00t2R00t
search
⌘Ctrlk
πŸ§‘β€πŸ’»
B00t2R00t
  • README
  • LICENSE
  • Active Directory Penetration Testing
    • ACLs\ACEs Permissions
    • Active Directory Certificate Services (ADCS)
      • AD CERTIFICATES PERSISTENCE
      • AD Certificates Exploitation
      • Account Persistence (PERSIST)
      • Certificate Theft (THEFT)
      • What can I do with a certificate?
      • Domain Escalation (ESC)
      • Domain Persistence (DPERSIST)
      • Enumeration
      • Compromising Forests with Certificates Explained in Passive Voice
      • Public Key Infrastructure (PKI) Attacks
      • Mindmaps
        • ESC8 - AD CS Relay Attack
        • ESC4 - Access Control Vulnerabilities
        • ESC6 - EDITF_ATTRIBUTESUBJECTALTNAME2
        • ESC1 - Misconfigured Certificate Templates
        • ESC2/ESC3 - Misconfigured Enrollment Agent Templates (Use an enrollment agent to request a certifica
        • No Security Extension Weak Certificate Mappings - ESC9ESC10
        • ESC7 - Vulnerable Certificate Authority Access Control
    • Azure AD
    • Domain Admin Access
    • Kerberos Delegation
    • Lateral Movement
    • Linux Active Directory
    • MITM Listen and Relay
    • Microsoft Endpoint Configuration Manager (MECM)
    • Mindmaps
    • Mitigations
    • Persistence
    • Privilege Escalation
    • System\Admin Access
    • Trust Relationship
    • Enumeration
    • Exploitation
  • Artificial Intelligence (AI) Penetration Testing
  • TODO LATER:
  • CVE
  • Cloud Penetration Testing
  • Data Lake Penetration Testing
  • Exploit Development
  • Methodology
  • Network Penetration Testing
  • Pivoting
  • Web Application Penetration Testing
  • Wireless Penetration Testing
  • Miscellaneous
  • Privilege Escalation
  • Red Teaming
  • Tools
gitbookPowered by GitBook
block-quoteOn this pagechevron-down
  1. Active Directory Penetration Testingchevron-right
  2. Active Directory Certificate Services (ADCS)

Mindmaps

ESC8 - AD CS Relay Attackchevron-rightESC4 - Access Control Vulnerabilitieschevron-rightESC6 - EDITF_ATTRIBUTESUBJECTALTNAME2chevron-rightESC1 - Misconfigured Certificate Templateschevron-rightESC2/ESC3 - Misconfigured Enrollment Agent Templates (Use an enrollment agent to request a certificachevron-rightNo Security Extension Weak Certificate Mappings - ESC9ESC10chevron-rightESC7 - Vulnerable Certificate Authority Access Controlchevron-right
PreviousPublic Key Infrastructure (PKI) Attackschevron-leftNextESC8 - AD CS Relay Attackchevron-right

Last updated 8 months ago