Attacking Active Directory from Linux means operating remotely β€” typically with no domain-joined machine. The toolset revolves around Impacket, NetExec (nxc), BloodHound-python, Certipy, Kerbrute, and Responder.

The main constraint is that you cannot run Windows-native tools directly β€” but nearly every critical attack has a Python/Linux equivalent.


TopicFile
Enumeration & Discoveryenumeration
Kerberos Attackskerberos-attacks
Credential Attacks & Relaycredential-attacks
Delegation Attacksdelegation-attacks
Lateral Movementlateral-movement
Domain & Forest Trustsdomain-trusts
Persistencepersistence

Disclaimer: For educational purposes only. Unauthorized access to computer systems is illegal.