nxc_ldap
Enumerate Active Directory users, groups, and computers; perform Kerberoasting, ASREP roasting, and BloodHound collection over LDAP.
Instructions
Execute NetExec LDAP protocol commands for Active Directory enumeration, including users, groups, Kerberoasting, and BloodHound collection.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| target | Yes | Target domain controller IP or hostname | |
| username | No | Username for authentication | |
| password | No | Password for authentication | |
| hash | No | NTLM hash for pass-the-hash | |
| domain | No | Domain name | |
| action | No | Action to perform | |
| bloodhoundCollection | No | BloodHound collection method (All, DCOnly, etc.) | |
| module | No | Module to run (e.g., adcs, daclread, maq) | |
| outputFile | No | Output file path for results | |
| threads | No | Number of concurrent threads |