Active: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
machinemachine
Active: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Codify: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Paper: use CVE-2019-17671 and CVE-2021-3560 where it fits the service, gain a shell, and escalate to root.
Perfection: enumerate the services, turn the exposed weakness into a shell, and escalate to root.
Blog: abuse the WordPress foothold, stabilize the shell, and escalate through the local weakness.
DevVortex: use CVE-2023-23752 where it fits the service, gain a shell, and escalate to root.