📃
Internal Pentest
Search...
Ctrl + K
Internal pentest
Active Directory
Initial attack vectors
ADCS + PetitPotal NTLM Relay
Previous
ASREPRoast
Next
Post-Compromise Enumeration
Last updated
3 years ago
Already explained pretty well in these both articles :
From Stranger to DA // Using PetitPotam to NTLM relay to Domain Administrato - Truesec
Truesec
ADCS + PetitPotam NTLM Relay: Obtaining krbtgt Hash with Domain Controller Machine Certificate
Red Teaming Experiments