bloodhound skills

12 tagged bloodhound, measured the same way as everything else here.

Browse within: active-directory 12active-directory-security 8adcs 8

acl-abuse

01

ADScanPro/Claude-AD

Skill Claude CodeCodex

Abusing Active Directory object ACLs (DACL/ownership) for privilege escalation and lateral movement (GenericAll, GenericWrite, WriteDACL, WriteOwner, AddMember, ForceChangePassword, and replication rights via DS-Replication-Get-Changes-All). Use when BloodHound CE shows an outbound control edge from a principal you…

141 +4 8d ago A 120 tokens original MIT

adcs-attacks

02

ADScanPro/Claude-AD

Skill Claude CodeCodex

Active Directory Certificate Services (AD CS) escalation techniques ESC1 through ESC17, driven by hand with Certipy (ly4k). Use when the target runs a Certificate Authority and you want to find vulnerable certificate templates or CA misconfigurations, request a certificate that impersonates a privileged user, and know…

141 +4 8d ago A 104 tokens original MIT

coercion-ntlm-relay

03

ADScanPro/Claude-AD

Skill Claude CodeCodex

Authentication coercion (PetitPotam MS-EFSR, PrinterBug MS-RPRN, DFSCoerce MS-DFSNM) chained into NTLM relay (impacket ntlmrelayx) toward LDAP, AD CS web enrollment (ESC8), or SMB. Use when SMB signing is not enforced or LDAP channel binding is missing, and you want to force a privileged machine account to…

141 +4 8d ago A 131 tokens original MIT

redteam

04

ktol1/RedTeam-Agent

Skill Claude CodeCodex

RedTeam physical terminal execution skill. ONLY run using runinterminal. Use for network scan, lateral movement, etc.

67 4mo ago A 27 tokens