GithubHelp home page GithubHelp logo

susohym / capsulecorp-ad-pentest-hyperv Goto Github PK

View Code? Open in Web Editor NEW

This project forked from marmeus/mad-hyperv

0.0 0.0 0.0 2.31 MB

Ansible + Vagrant + Hyper-V

C 2.68% PowerShell 96.28% Jinja 1.04%

capsulecorp-ad-pentest-hyperv's Introduction

Discord: -> Ping me if you need help setting up the environment or add new features.

1. Capsulecorp AD Pentest (Hyper-v)

The Capsulecorp Pentest is a small virtual network managed by Vagrant and Ansible on Hyper-V. It contains four Windows virtual machines configured with various vulnerable services. This project can be used to learn network Active Directory penetration testing, test Command And Control and develop software for future Active directory Audits.

This project took inspiration from the Royce's repo capsulecorp-pentest, and wanted to adapt it to an Active Directory environment using the power of Windows Hyper-V.

Why is this cool?

Nowadays, there is no free platform where you interact with a vulnerable Activery Directory environment unless you have a beefy computer with a huge amount of RAM and CPU. Thankfully, Hyper-V solves all these problems allowing you to have an AD environment consuming very few resources.

Virtual Machines

Resources

Furthermore, I created a small hacking path to become Domain Admin in this environment in several ways, starting as a local user named "auditor".

Requirements

  • A Windows system with at least 8GB of RAM and Windows Hyper-V capabilities.

Active Directory Vulnerabilities

  • Vulnerable Service

  • Unconstrained delegation

  • Constrained delegation

  • Abusing ACLs/ACEs

  • Kerberoasting

  • AS-REP Roasting

  • Abuse DnsAdmins

  • Password in an AD User comment

  • Password Spraying

  • DCSync

  • Silver Ticket

  • Golden Ticket

  • Pass-the-Hash

  • Pass-the-Ticket

  • SMB Signing Disabled

  • Bad WinRM permission

  • Anonymous LDAP query

  • Public SMB Share

Installation

The installation process can be followed in the INSTALLATION file.

References

capsulecorp-ad-pentest-hyperv's People

Contributors

leviter avatar marmeus avatar r3dy avatar reallybadjoke avatar sn0x736e avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    ๐Ÿ–– Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. ๐Ÿ“Š๐Ÿ“ˆ๐ŸŽ‰

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google โค๏ธ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.