> For the complete documentation index, see [llms.txt](https://xedex.gitbook.io/internalpentest/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://xedex.gitbook.io/internalpentest/internal-pentest/active-directory/initial-attack-vectors.md).

# Initial attack vectors

This section describes the first initial possible attacks to compromise a user account or maybe even the DC depending on the client configuration and security barriers.&#x20;

In this section we'll be reviewing :

1. LLMNR/NBT-NS Poisoning
2. cracking intercepted hashes with hashcat
3. SMB Relay
4. IPv6 attacks
5. Other attack vectors and strategies

For practicing purposes you can use this articles to set up your own environnement :

{% embed url="<https://medium.com/@kamran.bilgrami/ethical-hacking-lessons-building-free-active-directory-lab-in-azure-6c67a7eddd7f>" %}
