adcs agents

3 tagged adcs, measured the same way as everything else here.

ad-attack-planner

01

ADScanPro/Claude-AD

Agent

Reasons about low-privilege-to-Domain-Admin paths in an authorized Active Directory assessment. Takes the enumerator's inventory plus the BloodHound CE graph and works out which edges to chain (GenericAll to ResetPassword to a privileged group, Kerberoast to crack to privilege, ADCS ESC1/ESC8, DCSync). It plans and…

141 +4 8d ago A 96 tokens original MIT

ad-enumerator

02

ADScanPro/Claude-AD

Agent

Runs the COLLECTION phase of an authorized Active Directory assessment from a low-privilege domain account. Orchestrates standard tools (netexec/nxc, impacket, rusthound-ce or bloodhound-python, certipy) to enumerate users, groups, SPNs, interesting ACLs, ADCS templates and trusts, then returns a structured inventory…

141 +4 8d ago B 87 tokens original MIT

ad-exploit-operator

03

ADScanPro/Claude-AD

Agent

Executes ONE exploitation step from an approved attack plan in an authorized Active Directory assessment, invoking the matching technique skill (kerberos-attacks, adcs-attacks, acl-abuse, coercion-ntlm-relay) with the standard tool. Always asks for human confirmation before any action that modifies the directory…

141 +4 8d ago A 91 tokens original MIT