> For the complete documentation index, see [llms.txt](https://ttp.parzival.sh/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://ttp.parzival.sh/pentesting/infrastructure/active-directory.md).

# Active Directory

- [AD CS](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/ad-cs.md)
- [Coercing Authentication](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/coercing-authentication.md)
- [Credential Dumping](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping.md): MITRE ATT\&CK, Credential Access, ID TA0006
- [Cached Domain Credentials](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/cached-domain-credentials.md): MITRE ATT\&CK, Credential Access, Sub-technique T1003.005
- [Data Protection API (DPAPI)](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/data-protection-api-dpapi.md)
- [Group Policy Preferences](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/group-policy-preferences.md): MITRE ATT\&CK, Credential Access, Sub-technique T1552.006
- [LSA Secrets](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/lsa-secrets.md): MITRE ATT\&CK, Credential Access, Sub-technique T1003.004
- [LSASS Memory](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/lsass-memory.md): MITRE ATT\&CK, Credential Access, Sub-technique T1003.001
- [NTDS](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/ntds.md)
- [Security Account Manager (SAM)](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/security-account-manager-sam.md): MITRE ATT\&CK, Credential Access, Sub-technique T1003.002
- [Kerberos Tickets](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/kerberos-tickets.md): MITRE ATT\&CK, Credential Access, Technique T1558
- [Unsecured Credentials](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/unsecured_credentials-1.md): MITRE ATT\&CK, Credential Access, Technique T1552
- [WDigest](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/wdigest.md)
- [WiFi Profiles](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/os-credential-dumping/wifi-profiles.md)
- [Delegation Abuse](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/delegation-abuse.md)
- [Constrained Delegation](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/delegation-abuse/constrained-delegation.md)
- [Unconstrained Delegation](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/delegation-abuse/unconstrained-delegation.md)
- [Domain Enumeration](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/domain_enumeration.md)
- [Domain Dominance](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/domain-dominance.md)
- [Forge Golden Ticket](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/domain-dominance/create_golden_ticket.md): MITRE ATT\&CK, Credential Access, Technique T1558.001
- [Forge Silver Ticket](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/domain-dominance/create-silver-ticket.md): MITRE ATT\&CK, Credential Access, Technique T1558.002
- [Forge Trust Ticket](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/domain-dominance/forge-trust-ticket.md)
- [Skeleton Key](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/domain-dominance/skeleton_key.md)
- [Group Policy Preferences](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/group-policy-preferences.md)
- [Kerberos](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/kerberos.md)
- [AS-REP Roasting](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/kerberos/as-rep-roasting.md)
- [Kerberoasting](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/kerberos/kerberoasting.md)
- [Kerberos Relaying](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/kerberos/kerberos-relaying.md)
- [Lateral Movement](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/lateral_movement.md): MITRE ATT\&CK, Lateral Movement, ID TA0008
- [PowerShell](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/lateral_movement/exploitation_with_powershell.md): MITRE ATT\&CK, Execution, Technique T1059.001
- [Windows Remote Management (WinRM)](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/lateral_movement/winrm.md): MITRE ATT\&CK, Lateral Movement, Sub-technique T1021.006
- [Local Administrator Password Solution (LAPS)](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/local-administrator-password-solution-laps.md)
- [NoPac](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/nopac.md)
- [NTLMv1](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/ntlmv1.md)
- [Password Cracking](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/password_cracking.md): MITRE ATT\&CK, Credential Access, Sub-technique T1110.002
- [Password Policy](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/password-policy.md)
- [Password Spraying](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/password-spraying.md): Methodology for performing password spraying attacks against active directory
- [Reconnaissance](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/reconnaissance.md)
- [Relaying](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/relaying.md)
- [LDAP Relaying](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/relaying/ldap-relaying.md)
- [SMB Relaying](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/relaying/smb-relaying.md)
- [Shadow Credentials](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/shadow-credentials.md)
- [Zerologon](https://ttp.parzival.sh/pentesting/infrastructure/active-directory/zerologon.md)
