GriffonAD: A new tool to exploit bad configurations in Active Directory
github.com·19h·
Discuss: Hacker News

GriffonAD

A new tool to exploit bad configurations in Active Directory (based on Bloodhound json files).

Nothing is executed on the target, it generates commands for you and you just have to copy-paste these commands (with a few modifications). The main goal is to let the user a full control on what is modified: all commands are fully commented and parameters to change are highlighted in red.

Griffon supports many scenarios, take a look into config.ml !

Challenge

You can play with Griffon by installing a vulnerable AD: lab.

Installation

A pull request has been sent to impacket for dacledit but it’s still in review. This scrip…

Similar Posts

Loading similar posts...