ActiveNemesis 💀

Search

SearchSearch
        • Gaining shell access (in AD)
        • Initial Internal Attack Strategy (AD)
        • IPv6 Attacks
        • LLMNR Poisoning
        • Passback Attacks
        • SMB Relay Attacks
        • ZeroLogon
        • Clean up
        • File transfer
        • Maintaining access
        • Pivot
        • Dumping and cracking hashes
        • GPP Attacks (cPassword Attacks)
        • Kerberoasting
        • LNK File Attacks
        • Pass Attacks
        • Post-Compromise Attacks Strategy (AD)
        • PrintNightmare
        • Token Impersonation
        • Domain Enumeration with Bloodhound
        • Domain Enumeration with ldapdomaindump
        • Domain Enumeration with Plumhound
        • Post-Compromise Enumeration Strategy
        • Dumping the NTDS.dit
        • Golden Ticket and Pass the Ticket Attacks
        • Post-Domain Compromise Attack Strategy
      • Methodology and SUPER IMPORTANT CONSIDERATIONS
      • Active Directory
      • Logical Active Directory components
      • Physical Active Directory components
    Home

    ❯

    Attacking Active Directory

    ❯

    Post Compromise Enumeration

    ❯

    Post-Compromise Enumeration Strategy

    Post-Compromise Enumeration Strategy

    Aug 26, 20241 min read

    • PEH

    What is Post-Compromise Enumeration and when?

    After taking over a user in the domain, we can utilize different useful tools that can help us in enumeration.

    What do I look for?

    • Targets of high value
      • Domain admins
      • Enterprise admins
      • Other accounts (other than the one that we’re enumerating from)
      • Architecture of devices
    • ANY INFORMATION THAT CAN BE USEFUL (THINK OUTSIDE OF THE BOX)

    Related

    • Domain Enumeration with ldapdomaindump
    • Domain Enumeration with Bloodhound
    • Domain Enumeration with Plumhound

    Graph View

    • What is Post-Compromise Enumeration and when?
    • What do I look for?
    • Related

    Backlinks

    • Methodology and SUPER IMPORTANT CONSIDERATIONS
    • Welcome to ActiveNemesis

    • Linktree