active-directory-attacks
Audited by Socket on Mar 29, 2026
2 alerts found:
Malwarex2This document is an offensive reference detailing actionable AD attack techniques (delegation, GPO abuse, SCCM/WSUS deployment of payloads, ADCS abuses, ticket forging, credential harvesting, etc.). It is highly actionable and intended to enable enterprise compromise and persistence. The content should be treated as malicious or dual-use offensive material: if found in a repository or dependency, it represents a high supply-chain and security risk and warrants immediate removal or strict review/containment. Use of the commands and tools described will likely result in credential theft, privilege escalation, and remote code execution in AD environments.
MALICIOUS. The skill is fundamentally an offensive intrusion guide for AI agents, centered on credential theft, exploit execution, lateral movement, and persistence in Active Directory. While many referenced tools are legitimate security tools, the overall capability is incompatible with a benign helper skill and creates high real-world abuse risk.