Inject: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Windows
21 postsEscapeTwo
Inject
Vintage
Vintage: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Ghost
Administrator
Administrator: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Certified
Certified: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Blazorized
Blazorized: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Mist
Mist: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Axlle
Axlle: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Compiled
Compiled: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Jarmis
Jarmis: use CVE-2021-38647 where it fits the service, gain a shell, and escalate to root.
YPuffy
YPuffy: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Help
Help: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
BloodHound
BloodHound: collect BloodHound data, read the AD graph, and prioritize attack paths.
Cicada
Cicada: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Soccer
Soccer: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Bastion
Bastion: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Active
Active: enumerate the AD surface, abuse the exposed credential or delegation path, and escalate to Administrator.
Paper
Paper: use CVE-2019-17671 and CVE-2021-3560 where it fits the service, gain a shell, and escalate to root.
Blog
Blog: abuse the WordPress foothold, stabilize the shell, and escalate through the local weakness.