get_gpo_tier_zeros
Identify Tier 0 groups linked to a specific Group Policy Object to detect high-privilege attack paths for lateral movement and privilege escalation in Active Directory environments.
Instructions
Retrieves the Tier 0 groups that are linked to a specific GPO in the domain.
Tier 0 groups are the highest privileged groups in the domain and have access to all resources.
This can be used to identify potential targets for lateral movement and privilege escalation.
Args:
gpo_id: The ID of the GPO to query
limit: Maximum number of Tier 0 groups to return (default: 100)
skip: Number of Tier 0 groups to skip for pagination (default: 0)
Input Schema
TableJSON Schema
| Name | Required | Description | Default |
|---|---|---|---|
| gpo_id | Yes | ||
| limit | No | ||
| skip | No |