System exploitation testing - Active Directory attacks, privilege escalation (Linux/Windows), and exploit development.

GitHub
安装命令
npx skhub add transilienceai/system
Markdown
SKILL.md

System

Test system-level security including Active Directory, privilege escalation, and exploit development.

Techniques

TypeKey Vectors
Active DirectoryKerberoasting, AS-REP roasting, DCSync, PtH, Golden/RODC Ticket, RBCD, ACL abuse, KeyList, Shadow Credentials, ADCS (ESC1-9/16)
Privilege EscalationSUID/sudo abuse, kernel exploits, service misconfig, token manipulation
Exploit DevelopmentBuffer overflow, format string, ROP chains, shellcode, heap exploitation

Workflow

  1. Enumerate system and domain information
  2. Identify escalation paths and misconfigurations
  3. Exploit with appropriate techniques
  4. Demonstrate impact (domain admin, root access)
  5. Document attack chain with evidence

Reference

  • reference/INDEX.md - Router for AD attacks, privilege escalation, and exploit-dev scenarios (see reference/scenarios/)
  • reference/format-string-exploitation.md - Format string read/write primitives, architecture differences, mitigation bypass
  • reference/heap-exploitation.md - Modern glibc heap techniques (tcache poison, unsorted bin leak, environ stack leak, ROP)
发现
标签

此技能尚未发布标签。

版本
最新版本元数据

版本

v2026.09.24

发布时间

2026年9月24日

分类

未分类

许可证

MIT

源路径

skills/system

默认分支

main

最新提交

95fdc12

Tree SHA

854bd03