> For the complete documentation index, see [llms.txt](https://0xss0rz.gitbook.io/0xss0rz/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://0xss0rz.gitbook.io/0xss0rz/pentest/internal-pentest/methodology-and-cheatsheet.md).

# Methodology & Cheatsheet

[![ko-fi](https://ko-fi.com/img/githubbutton_sm.svg)](https://ko-fi.com/Y8Y41FQ2GA)

## Checklist

&#x20;<https://thecyphere.com/wp-content/uploads/2024/05/Internal-penetration-testing-checklist.pdf>

{% embed url="<https://github.com/six2dez/pentest-book/blob/master/others/internal-pentest.md>" %}

## Guide

{% embed url="<https://www.login-securite.com/2024/06/10/enfin-comprendre-les-vecteurs-dattaques-active-directory-un-guide-des-vulnerabilites-et-configurations-dangereuses-partie-i/>" %}

{% embed url="<https://zer1t0.gitlab.io/posts/attacking_ad/>" %}

{% embed url="<https://drive.google.com/file/d/1NbLPfUUSPb_xGsmMfkjAGp0SYVTU4YaW/view>" %}

{% embed url="<https://www.youtube.com/watch?feature=youtu.be&si=vA8jwNTy0v8Xg_rZ&v=M-2d3sM3I2o>" %}

## MindMap

{% embed url="<https://orange-cyberdefense.github.io/ocd-mindmaps/img/mindmap_ad_dark_classic_2025.03.excalidraw.svg>" %}

<figure><img src="https://raw.githubusercontent.com/esidate/pentesting-active-directory/a8e37705542720cb1f9b65ec9039f67b70b61ca6/v2/pentesting_active_directory.svg" alt=""><figcaption><p>Source: Orange Cyberdefense - MayFly : <a href="https://raw.githubusercontent.com/esidate/pentesting-active-directory/a8e37705542720cb1f9b65ec9039f67b70b61ca6/v2/pentesting_active_directory.svg">https://raw.githubusercontent.com/esidate/pentesting-active-directory/a8e37705542720cb1f9b65ec9039f67b70b61ca6/v2/pentesting_active_directory.svg</a></p></figcaption></figure>

<figure><img src="/files/kzRuO2fsLo80LnF8nNoV" alt=""><figcaption><p>Source: <a href="https://tajdini.net/blog/wp-content/uploads/2021/09/Active-Directory-Penetration-Manual.png">https://tajdini.net/blog/wp-content/uploads/2021/09/Active-Directory-Penetration-Manual.png</a></p></figcaption></figure>

<figure><img src="/files/G5hdgRHgbzp4zFs6rOe0" alt=""><figcaption></figcaption></figure>

Ref: <https://xmind.app/m/vQuTSG/#>

### ADMR

Active Directory Mind Map from OCD + The Hacker Recipes

{% embed url="<https://github.com/Imp0sters/ADMR>" %}

## Cheatsheet

{% embed url="<https://github.com/ZishanAdThandar/pentest/blob/main/notes/ActiveDirectory.md>" %}

{% embed url="<https://github.com/0xn1k5/Red-Teaming>" %}

### LOLAD

{% embed url="<https://lolad-project.github.io/>" %}

### WADComs

{% embed url="<https://wadcoms.github.io/>" %}

### Arsenal

{% embed url="<https://github.com/Orange-Cyberdefense/arsenal>" %}

On exegal hit "a"

<figure><img src="/files/ZQpyF5x4gCGLGzIjpLKJ" alt=""><figcaption></figcaption></figure>
