DSDeonte Spencerinhack2harden.com·Aug 22 · 18 min readThe OSCP Toolkit: bloodyADExecuting the Active Directory attack paths BloodHound finds, from a Linux box. What bloodyAD is, and where it fits BloodHound is very good at one thing: showing you what's possible in an Active Direc51I
DSDeonte Spencerinhack2harden.com·Aug 14 · 27 min readThe OSCP Toolkit: BloodHound + RustHound-CEYou have a foothold. You ran NetExec, validated a credential, and watched NXC print that green [+]. Good. Now what? Now you're standing in a domain with one low-priv account and no idea where it can t10
DSDeonte Spencerinhack2harden.com·Aug 12 · 24 min readThe OSCP Toolkit: NetExecThe Active Directory Swiss Army Knife If Ligolo-ng is the tool I want ready the second I need to pivot, NetExec is the tool I want ready the second Active Directory shows up. NXC is one of the tools I20
DSDeonte Spencerinhack2harden.com·Aug 11 · 10 min readThe OSCP Toolkit: Ligolo-ngHow I actually use Ligolo-ng to pivot: the mental model, the minimal workflow to get a working tunnel, and the listener, file transfer, and troubleshooting workflows for when you need more. This is th10
DSDeonte Spencerinhack2harden.com·Aug 10 · 6 min readThe OSCP Toolkit: The Tools That Actually Carried MeThe offensive security tools I actually relied on while preparing for and passing OSCP, organized by the job they solve. Hey everyone. I just officially passed the OSCP, and now that I'm on the other 10