Index
As this ebook edition doesn't have fixed pagination, the page numbers below are hyperlinked for reference only, based on the printed edition of this book.
A
AaronLocker 36
Access Control Entities (ACEs) 153, 216
Access Control List (ACL) abuse 152-154
computer 156
DCSync 160, 161
group 155, 156
user 157-159
Access Control Lists (ACLs) 52, 124
bypass 16
Account Operators 168, 169
account persistence 231
active user credential theft, via certificates 231, 232
machine persistence, via certificates 233
via certificate renewal 233
ACL and attribute manipulations
AdminSDHolder domain object 191-193
delegation, on krbtgt account 200-202
domain object 193, 194
SeEnableDelegationPrivilege 198-200
Server (Un)Trust Account 197, 198
SID History 194-197
Active Directory (AD)
delegation 120
group membership 307
kill chain 5
Active Directory Certificate Service (AD CS) 1, 221
Active...