ADCS Attack and Defense Tools

Explore this curated list of tools related to Active Directory Certificate Services (AD CS) attacks, auditing, and defense. These tools can be valuable for both offensive security testing and defensive measures.

Certify

A C# tool to enumerate and abuse misconfigurations in Active Directory Certificate Services (AD CS).

Certipy

Python implementation of AD CS attack primitives, designed for offensive and defensive security testing.

PSPKIAudit

PowerShell module for auditing AD CS infrastructure and identifying vulnerabilities.

ADCS-Attack-Defense-Toolkit

A collection of scripts and tools for both attacking and defending AD CS infrastructures.

PKINITtools

A set of tools for Kerberos PKINIT and relaying attacks in AD CS environments.

Related Resources

Note: These tools should be used responsibly and only in environments where you have explicit permission. Always follow ethical guidelines and applicable laws when conducting security testing.