For all the CTF fans who don't want to manually exploit long and easy AD privesc paths, autobloody has been finally updated to its 1.0.0 version
22.10.2025 05:29 β π 0 π 0 π¬ 0 π 0@cravaterouge.bsky.social
Need a hand with your IT security? Send me a DM See more on https://cravaterouge.com
For all the CTF fans who don't want to manually exploit long and easy AD privesc paths, autobloody has been finally updated to its 1.0.0 version
22.10.2025 05:29 β π 0 π 0 π¬ 0 π 0Explore the AD DS even more using MSLDAP operations with bloodyAD 2.3.1:
"bloodyad [<auth_info>] msldap <msldap_command>"
MSLDAP commands list:
github.com/CravateRouge...
Struggling with cross-domain Kerberos? Not anymore, no matter the number of hops with kerbad v0.5.5 + bloodyAD v2.1.27:
www.linkedin.com/feed/update/...
Finally a bloodhound collector inter-domain in bloodyAD v2.1.25!
Thanks to the amazing work of @Skelsec (don't hesitate to support his project octopwn) and some custom code of mine named the reacher to reach every DC alive π
I know some of you wanted it and JSON output is now available in bloodyAD v2.1.25 thanks to mHiluxS
23.09.2025 05:54 β π 0 π 0 π¬ 0 π 0github.com/SySS-Researc... is really a bless for those who want to deploy BloodHound in one step
21.09.2025 06:08 β π 0 π 0 π¬ 0 π 0Tired to deal with the clock skew for Kerberos so github.com/CravateRouge... will attempt to synchronize its clock to the server now
03.09.2025 14:49 β π 0 π 0 π¬ 0 π 0New article for those curious about what they can find in the AD Recycle Bin (Bonus: I updated bloodyAD so you can play on thisπ)
www.linkedin.com/feed/update/...
Exploiting BadSuccessor from A to Z with NT hash of impersonated accounts using bloodyAD v2.1.16
github.com/CravateRouge...
BadSuccessor in Python with bloodyAD
Have fun :D
www.linkedin.com/feed/update/...
π Happy Victory Day! π
The latest update to bloodyAD makes the shadowcredentials attack even smarter:
www.linkedin.com/feed/update/...
bloodyAD v2.1.8 is out with a new feature to resolve foreign SID when displaying security descriptors with "get object" or "get search" and a lifetime option on "add user" offered by
github.com/martanne
to make them vanish magically once expired
github.com/CravateRouge...
BloodyAD offers flexible authentication options, including cleartext passwords, pass-the-hash, pass-the-ticket, and certificate-based authentication.
Read more: www.helpnetsecurity.com/2025/01/28/b...
#cybersecurity #cybersecuritynews #opensource
@cravaterouge.bsky.social
Little gift just before Christmas π
Learn how AD LDAP logging works, how to improve it or how to bypass it
Would be a perfect gift for Christmas π
22.12.2024 05:45 β π 0 π 0 π¬ 0 π 0π Big Announcement! π
After 8+ years of working on PayloadsAllTheThings, Iβm excited to release it as an ebook on Leanpub! πβ¨
To celebrate, Iβm gifting 2 free copies to random reposters! π₯
π Repost for a chance to win
Thank you all for your incredible support! π
#CyberSecurity #Infosec
Working on making bloodyAD more cross-domain friendly.
You can now retrieve DNS records on all AD domains trusting yours using 'get dnsDump --transitive'
Cross-domain transitivity works even with kerberos credentials from your initial domain.
github.com/CravateRouge...