⬆️Child → Parent Trust Attacks
🎯 HTB Academy: Active Directory Enumeration & Attacks
📍 Overview
🔗 SID History Primer
Concept
ExtraSids Attack Requirements
Component
Purpose
Example
🔓 Attack Methodology
Step 1: Gather Required Data
KRBTGT Hash Extraction
Child Domain SID
Enterprise Admins SID
Step 2: ExtraSids Attack Execution
Method 1: Mimikatz Golden Ticket
Method 2: Rubeus Golden Ticket
Step 3: Parent Domain Compromise
🎯 HTB Academy Lab Solutions
Lab Environment Setup
🔍 Question 1: "What is the SID of the child domain?"
🏛️ Question 2: "What is the SID of the Enterprise Admins group in the root domain?"
🎫 Question 3: "Perform the ExtraSids attack to compromise the parent domain. Submit the contents of the flag.txt file located in the c:\ExtraSids folder."
⚠️ Security Implications
Attack Prerequisites
Detection Considerations
Mitigation Strategies
🔑 Key Takeaways
Attack Flow Summary
Critical Success Factors
Professional Impact
Last updated