wordpress click icon logo
  • VAPT
  • Red Teaming
  • Tools & Scripts
  • AD Pentesting
  • AI Pentesting
  • Google Dorking
  • VAPT
  • Red Teaming
  • Tools & Scripts
  • AD Pentesting
  • AI Pentesting
  • Google Dorking
Category: AD Pentesting
AD Pentesting

Enumerating Active Directory Without Credentials: A Practical Guide for Security Assessments

📅 August 22, 2026 ✏ khukuririmal

Active Directory enumeration is often associated with valid domain credentials. In many penetration tests, the first question is much simpler “What can an attacker discover before authenticating at all?”. An assessor entering…

Read writeup
AD Pentesting

RPC Enumeration in Active Directory: A Practical Guide for Penetration Testers

📅 August 9, 2026 ✏ khukuririmal

Active Directory enumeration is often associated with LDAP, SMB, Kerberos, BloodHound, PowerView, or tools such as NetExec. However, another extremely useful source of information is frequently overlooked: Microsoft Remote Procedure Call (RPC).…

Read writeup
AD Pentesting

The Power of Windows Native Command-Line Utilities in Active Directory Pentesting and Internal Red Teaming

📅 January 3, 2026 ✏ khukuririmal

Active Directory Pentesting has evolved significantly over the last few years. Gone are the days when attackers or red teamers could reliably depend on dropping Python tools, importing PowerShell scripts, or executing…

Read writeup
AD Pentesting

Purple Knight: A Modern Active Directory Security Health Check for Hybrid Enterprises

📅 December 18, 2025 ✏ khukuririmal

Active Directory (AD) remains the backbone of identity, authentication, and authorization in most enterprise environments. Despite years of awareness around AD attacks—Kerberoasting, Pass-the-Hash, ACL abuse, delegation misconfigurations—many organizations still operate with legacy…

Read writeup

YouTube

Subscribe on YouTube

Recent Posts

  • OSIRIS AI: A Practical Guide to the Open-Source OSINT Dashboard
  • Magisk for Android Penetration Testing: Top 5 Modules and Their Practical Uses
  • How to Secure JWTs: Validation, Key Management, and Session Protection
  • AI Penetration Testing Methodology: A Pentester’s Guide to Assessing LLM and Agentic Applications
  • Enumerating Active Directory Without Credentials: A Practical Guide for Security Assessments

Recent Comments

  • Bluetooth Enumeration & GATT Analysis: A Practical BLE Security Assessment with TP-Link UB500 & Flipper Zero - Cyber Security Writeups on Bluetooth Pentesting Lab Setup Guide: Building Your First BLE Security Lab with TP-Link UB500 and Flipper Zero
  • Sandip Parane on JavaScript File Analysis in VAPT: An Overlooked Goldmine for High-Impact Findings
  • HariHacks on Redefining the Traditional Black Box Web Application VAPT Approach

Archives

  • September 2026
  • August 2026
  • July 2026
  • June 2026
  • May 2026
  • April 2026
  • March 2026
  • February 2026
  • January 2026
  • December 2025
  • About
  • Contact
  • Disclaimer
  • Privacy Policy
    © 2026 Cyber Security Writeups · cybersecwriteups
    • About
    • Contact
    • Disclaimer
    • Privacy Policy