🏛️ Pracivo Advanced AD Lab

PRACIVO LAB — INTENTIONALLY VULNERABLE
⚠️ Pracivo Security Lab — Advanced AD attack techniques beyond Kerberoasting. Includes AS-REP Roasting, DCSync, Golden Tickets, and BloodHound.
Lab Credentials: ram / pracivo  |  john.smith / Welcome1  |  administrator / Admin@2024

Advanced AD Attack Paths

AttackRequiresGives You
AS-REP RoastingAny domain user (or anonymous)Offline crackable hash for accounts with no preauth
DCSyncDomain Admin or Replication rightsAll NTLM hashes from the DC — full domain compromise
Golden Ticketkrbtgt NTLM hashForge Kerberos tickets as ANY user — permanent access
BloodHoundDomain userVisual map of attack paths to Domain Admin
Password SprayingList of usernamesValid credentials without triggering lockout
Lateral MovementValid credentials or hashAccess to other machines on the domain