LogoClawIndex
CasesSkillsAbout
LogoClawIndex

active-directory-attacks - Active Directory Attacks

Provides techniques for reconnaissance, credential harvesting, Kerberos attacks, and lateral movement in Active Directory environments.

Tags

Updated: 2026-09-22

Capabilities

Typical Inputs

Typical Outputs

What this skill does

  • Synchronize Kerberos clock
  • Enumerate Active Directory
  • Perform password spraying
  • Execute Kerberoasting attacks
  • Execute AS-REP Roasting attacks
  • Execute DCSync attacks
  • Perform Pass-the-Ticket attacks
  • Perform Pass-the-Hash attacks
  • Relay NTLM authentications
  • Exploit AD CS misconfigurations

Inputs

  • Kali Linux or Windows attack platform
  • Domain user credentials
  • Network access to Domain Controller
  • Active Directory attack tools

Outputs

  • Domain enumeration data
  • Extracted credentials and hashes
  • Kerberos tickets for impersonation
  • Domain Administrator access
  • Persistent access mechanisms

Requirements

  • Network connectivity to Domain Controller
  • Valid domain user credentials
  • Time synchronization within 5 minutes of DC
  • Replicating Directory Changes rights for DCSync

Source

  • Spec: SKILL.md

ClawIndex

OpenClaw Skills & Use Case Index

ClawIndex is an ecosystem-driven index of OpenClaw skills and real-world use cases.

Index

Skills·
Cases

Meta

About·
Disclaimer·
Email·
GitHub
© 2026 ClawIndex All Rights Reserved.
active-directory
kerberos
credential-harvesting
penetration-testing
red-team
Synchronize Kerberos clock
Enumerate Active Directory
Perform password spraying
Execute Kerberoasting attacks
Kali Linux or Windows attack platform
Domain user credentials
Network access to Domain Controller
Domain enumeration data
Extracted credentials and hashes
Kerberos tickets for impersonation