⚔️
DevOpsPython

Active Directory Attacks

by zebbern

Active Directory Attacks is a DevOps skill for Claude Code, published by zebbern in claude-code-guide.

4.6K stars459 forkson zebbern/claude-code-guideAdded 2026/08/16Repository updated 2026/08/15
aiai-agentai-agent-toolsanthropic-claudeclaudeclaude-aiclaude-apiclaude-codeclaude-code-communicationclaude-code-guideclaude-code-skillsclaude-commandsclaude-desktopclaude-mcpclaude-sonnetcodemcpmcp-agentsmcp-toolsvscode-extension
Install in seconds
Install Active Directory Attacks
Copy Active Directory Attacks into your Claude Code skills folder. Run the command in your terminal, or review the source on GitHub before installing.
terminal
npx degit https://github.com/zebbern/claude-code-guide/tree/main/skills/active-directory-attacks ~/.claude/skills/active-directory-attacks

Requires Node.js. Downloads this skill only — not the rest of the repository — into your Claude Code skills folder.

Without Node.js

git clone https://github.com/zebbern/claude-code-guide.git

Clones the whole repository, then copy the skill’s own directory into your skills folder yourself.

In this catalog

Source file
skills/active-directory-attacks/SKILL.md in zebbern/claude-code-guide
Installs to
~/.claude/skills/active-directory-attacks
Collection
One of 25 skills cataloged from this repository
Category
DevOps798 skills

What Active Directory Attacks does

Active Directory Attacks provides techniques for attacking Microsoft Active Directory environments, covering reconnaissance, credential harvesting, Kerberos attacks, lateral movement, and privilege escalation for red team operations and penetration testing.

Active Directory Attacks is cataloged under DevOps on DirSkills. Active Directory Attacks comes from a repository tagged ai, ai-agent, ai-agent-tools, anthropic-claude and claude.

Documentation

README

Active Directory Attacks

Purpose

Provide comprehensive techniques for attacking Microsoft Active Directory environments. Covers reconnaissance, credential harvesting, Kerberos attacks, lateral movement, privilege escalation, and domain dominance for red team operations and penetration testing.

Inputs/Prerequisites

  • Kali Linux or Windows attack platform
  • Domain user credentials (for most attacks)
  • Network access to Domain Controller
  • Tools: Impacket, Mimikatz, BloodHound, Rubeus, CrackMapExec

Outputs/Deliverables

  • Domain enumeration data
  • Extracted credentials and hashes
  • Kerberos tickets for impersonation
  • Domain Administrator access
  • Persistent access mechanisms

Essential Tools

This is the opening of the README. Read the full README on GitHub.

Commands Active Directory Attacks provides

Slash commands named in this skill’s SKILL.md, listed in the order they first appear.

  • /domain
  • /set
  • /ptt

Frequently asked about Active Directory Attacks

  • What else does zebbern publish alongside Active Directory Attacks?

    Active Directory Attacks is one of 25 skills that DirSkills catalogs from zebbern/claude-code-guide, the repository it ships in. Its siblings there include API Fuzzing for Bug Bounty, API Shape Explorer and AWS Penetration Testing. Each one is a separate skill with its own page in this directory, installs the same way Active Directory Attacks does, and is maintained by zebbern in that same repository. The rest of the collection is listed on the zebbern/claude-code-guide page.

  • How does Active Directory Attacks compare to other DevOps skills?

    Active Directory Attacks ranks #171 by stars among the 798 DevOps skills in this catalog. The most-starred ones next to it are Backend Patterns, API Connector Builder and Migration. DirSkills ranks by the star count of the repository each skill ships in, so that order reflects how popular those repositories are rather than any review of Active Directory Attacks against them. Open each page to compare what they document and how they install.

More from zebbern/claude-code-guide

Active Directory Attacks is one of 25 skills cataloged on DirSkills from zebbern/claude-code-guide.

See all 25 skills
🛡️
2w ago

API Fuzzing for Bug Bounty

API Fuzzing for Bug Bounty provides techniques for testing REST, SOAP, and GraphQL APIs during bug bounty hunting and penetration testing. Use it to discover vulnerabilities like IDOR, authentication bypass, SQL injection, SSRF, and GraphQL-specific issues.
Quality
4.6K459
🧩
2w ago

API Shape Explorer

API Shape Explorer generates multiple radically different interface designs for a module using parallel sub-agents, then compares them to help you choose the best API shape. Use it when designing APIs, exploring interface options, or comparing module shapes.
AI Engineering
4.6K459
🛡️
2w ago

AWS Penetration Testing

AWS Penetration Testing guides security assessment of Amazon Web Services environments, including IAM enumeration, privilege escalation, SSRF to metadata, S3 bucket exploitation, and Lambda attacks. Use it when asked to pentest AWS or test cloud infrastructure security.
Quality
4.6K459
🔍
2w ago

Academic Paper Reviewer

Academic Paper Reviewer simulates academic peer review across Originality, Methodology, Results, and Writing, providing Major and Minor Revision recommendations with actionable feedback. Use it when asked to review a paper or simulate peer review.
Quality
4.6K459
🔍
2w ago

Audit Flow

Audit Flow traces system flows interactively across code, API, auth, data, and network layers with SQLite persistence and Mermaid export. Use it for security audits, compliance documentation, flow tracing, debugging, architecture reviews, or incident post-mortems.
Quality
4.6K459
🔐
2w ago

Authentication Patterns

Authentication Patterns compares session-based, JWT, and OAuth 2.0 authentication approaches and helps select providers like NextAuth, Clerk, Supabase Auth, and Lucia. Use it when implementing, reviewing, or migrating authentication flows to follow security best practices.
Quality
4.6K459