BigHugger
sk Skill · mukul975

exploiting-adcs-with-certipy

Use Certipy to enumerate AD CS certificate authorities and templates over LDAP/RPC, then exploit ESC1-ESC16 misconfigurations — SAN abuse, NTLM relay to web enrollment (ESC8), Shadow Credentials, golden certificate forgery, and PKINIT/Schannel auth. Use during authorized penetration tests to escalate a domain foothold to Domain Admin, or to validate that certificate template ACLs and CA hardening detect these…

installs 8w
0
30-day movement
starts with the next reading
Related entries
1
Connections
0
bashPythonprivilege-escalationesc8pkinitesc1certipyactive-directoryadcsred-team
Host repository
mukul975/Anthropic-Cybersecurity-Skills
Version
1.0
Licence
Apache-2.0
Host stars
33k
Host language
Python