active directory commands

16 tagged active directory, measured the same way as everything else here.

Browse within: active-directory-security 16cybersecurity 13

ad-attack-paths

01

ADScanPro/Claude-AD

Command

Launch the ad-attack-planner agent to reason low-privilege-to-Domain-Admin paths from the collected inventory and BloodHound CE graph, then present the plan for human approval before any exploitation.

137 7d ago A 42 tokens original MIT

ad-recon

02

ADScanPro/Claude-AD

Command

Launch the ad-enumerator agent to run the collection phase against the defined scope, producing a structured AD inventory (users, groups, SPNs, ACLs, ADCS templates, trusts) plus a BloodHound CE graph.

137 7d ago A 46 tokens original MIT

ad-scope

03

ADScanPro/Claude-AD

Command

Define and record the scope of an authorized Active Directory engagement (domain(s), DC IP, initial credentials, and what is in scope) into a scope file the other AD commands read.

137 7d ago A 37 tokens original MIT

hunt

04

Evaluris-Solutions/claude-active-directory

Command

Active Directory offensive phase — credential attacks (spray if allowed), AS-REP and Kerberoast workflows, NTLM relay opportunities, delegation abuse paths, ACL-based escalation, AD CS template abuse, lateral movement within ROE. Usage: /hunt corp.local.

16 3mo ago A 0 tokens

recon

05

Evaluris-Solutions/claude-active-directory

Command

Active Directory reconnaissance — DNS SRV/LDAP DC discovery, LDAP user and group enumeration, Kerberos pre-auth and AS-REP candidates, SPN discovery for Kerberoasting, SMB signing and null session policy, password policy, trust relationships, BloodHound/SharpHound collection prep. Requires ROE. Usage: /recon…

16 3mo ago A 0 tokens

scope

06

Evaluris-Solutions/claude-active-directory

Command

Rules of engagement — verify authorized domains, DCs, subnets, accounts, destructive actions, and exclusions before testing. Usage: /scope or /scope corp.local.

16 3mo ago A 0 tokens