ADScanPro/Claude-AD
DirSkills catalogs 8 skills from this repository, across 4 categories: AI Engineering, Automation, Quality, Writing.
πͺͺ
1h ago
AD CS Attacks
AD CS Attacks covers Active Directory Certificate Services escalation paths ESC1 through ESC17 using Certipy. Use it to enumerate vulnerable templates or CA settings, request impersonation certificates, and review checks, event IDs, and remediation.
AI Engineering
17628
π‘οΈ
1h ago
AD Environment Constraints
AD Environment Constraints lists common Active Directory hardening checks that break NTLM, Kerberos, LDAP, and SMB operations. Use it to fingerprint domain posture and choose the right auth path, transport, and host naming before running AD tools.
AI Engineering
17628
πͺ
1h ago
AD Methodology
AD Methodology gives the phase order for an Active Directory assessment: setup, collection, exploitation, and post-processing. Use it to decide what to run next, avoid lockouts, and collect the right data before attacking.
AI Engineering
17628
π‘οΈ
1h ago
AD OPSEC Telemetry
AD OPSEC Telemetry explains the Windows events and defender alerts generated by common Active Directory techniques like Kerberoasting, AS-REP roasting, DCSync, LSASS dumping, and lateral movement. Use it to document engagement noise or to decide what to monitor.
Quality
17628
π
1h ago
Acl Abuse
Acl Abuse turns dangerous Active Directory ACLs and ownership rights into exact bloodyAD and impacket commands for privilege escalation, lateral movement, and DCSync after compromise. Use it when BloodHound CE shows an outbound control edge such as GenericAll, WriteDACL, or AddMember.
Automation
17628
π
1h ago
Coercion And NTLM Relay
Coercion And NTLM Relay forces a privileged Windows account to authenticate outward, then relays NTLM to LDAP, SMB, or AD CS web enrollment. Use it for RBCD, DCSync-capable ACL writes, certificates, detection, and hardening checks.
Automation
17628
πΊοΈ
1h ago
Compliance Mapping
Compliance Mapping provides a conceptual map from Active Directory attack techniques to related compliance control families. Use it to orient a technical finding toward ENS, NIS2, or DORA without treating it as an auditor-grade control matrix.
Writing
17628
π
1h ago
Kerberos Attacks
Kerberos Attacks covers Kerberoasting, AS-REP roasting, and delegation abuse in Active Directory using standard tools. Use it when you need commands, hash formats, event IDs, and remediation for Kerberos-based attack paths.
Quality
17628