Course Overview
Welcome to this course on Active Directory Ethical Hacking. All you need is a positive attitude and a desire to learn.
Course curriculum
-
-
How to Connect to the Lab - Windows
-
How to Connect to the Lab - Linux/Kali/Parrot
-
Intro to the lab and course
-
Do You Lab Access?
-
-
-
Lab Diagram V2
-
Anonymously Quering or Binding LDAP To Enumerate Active Directory
-
Enumerate Users Anonymously - CME
-
Enumerate Users Anonymously - RPC
-
Enumerate Users Anonymously - enum4linux
-
Enumerate Guest Access on Shares - CME
-
Read about Anonymously Binding Querying Active Directory
-
-
-
I love Responder
-
The importance of SMB signing How criminals can (potentially) take over the entire network if SMB signing is not enabled
-
responder + ntlmrelayx + proxychain = SAM Database DUMP
-
Socks Relay to Dump lsassy
-
responder + ntlmrelayx + proxychain + DonPapi & wmiexec.py
-
Pass-The-Hash - wmiexec.py
-
Pass-The-Hash - Evil-WinRm
-
Pass the Hash with CrackMapExec
-
Coerced auth smb + ntlmrelayx to ldaps with drop the mic
-
-
-
Exploiting Username - ASREP
-
Password Spray
-
User listing with GetADUsers and ldapsearch
-
Kerberoasting User Accounts
-
Setting Up PowerView
-
Get-NetUser
-
Get-NetGroup
-
Get-NetComputer
-
Invoke-ShareFinder
-
Get-NetGPO
-
Get-ObjectAcl
-
Get-NetDomainTrust
-
PowerView Bible
-
-
-
NoPac Exploit From Linux With NoPAC.py
-
NoPac Exploit From Windows With NoPAC.exe
-
PrintNightmare - BRONX
-
PrintNightmare - BALTIMORE$
-
Constrained Delegation With Protocol Transition - User:Elena.Lopexz
-
Constrained Delegation Without Protocol Transition - Server:Yonkers$
-
Resource Based Constrained Delegation - Server:NYC$
-
Enumerate Trust
-
Foreign group and users
-
IIS - Webshell
-
Getting a Better Shell
-
SeImpersonatePrivilege With Invoke-BadPotato.ps1
-
-
-
Enumeration 1 - Users, Groups, Computers
-
Enumeration 2 - Arp, Tokens, Patches
-
Enumeration 3 - Shares, SMB, and More
-
Back Door Add User
-
HashDump With Metasploit
-
Lateral Movement With Metasploit
-
DsSync With Metasploit from NT Autority/System to Administrator
-
Golden Ticket with Metasploit
-
BackDoor Meterpreter Service
-
About this course
- $150.00
- 82 lessons
- 10.5 hours of video content
What Users Say About Us
“This was a fun course. The teacher put a lot of time and effort towards this course. It is easy to follow, and I recommend anyone to also purchase the lab, which is key to learn everything. ”
“The course was great and easy to follow along. I thought I wasn't going to learn much since I have taken other courses, but I was wrong!! My favorite part was the MSSQL and the ADCS exploits! ”
“Yes, it was a great course! It was long but definitely worth! I learned a lot of new skills that is going to help myself and my company. Also, the fact that there is a lab you can follow. It is awesome!!!!”