AD Testing Checklist (Linux)
Below are the things you should check on every Active Directory assessment from a Linux machine
Shortlist
Extra Attacks
Confirm AD Access (Linux)
Search for abusable ACLs (Bloodhound CE)
Search for passwords in user descriptions
Search for Kerberoastable accounts
Search for As-Rep Roastable accounts
Perform Timeroasting attack
Check for default Machine Account Quota
Check password policy
Check for active WebDAV clients
Method 1 (WebClientScanner) - Faster
Method 2 (NetExec) - CSV Output
Check for missing SMB signing
Check for SMBv1 Support
Check for writable shares
Check for sensitive data in shares
Check for anonymous access
Check for Unconstrained Delegation (Non-DCs)
Check LDAP Configuration
Check MsSQL Configuration
Check ADCS Configuration
Check SCCM Configuration
Last updated