An elevation of privilege vulnerability exists in Active Directory Forest trusts due to a default setting that lets an attacker in the trusting forest request delegation of a TGT for an identity from the trusted forest, aka 'Active Directory Elevation of Privilege Vulnerability'.
No PoCs from references.
- https://github.com/ErdemOzgen/ActiveDirectoryAttacks
- https://github.com/Nieuport/Active-Directory-Kill-Chain-Attack-Defense
- https://github.com/R0B1NL1N/AD-Attack-Defense
- https://github.com/Whiteh4tWolf/Attack-Defense
- https://github.com/aymankhder/AD-attack-defense
- https://github.com/bhataasim1/AD-Attack-Defence
- https://github.com/geeksniper/active-directory-pentest
- https://github.com/infosecn1nja/AD-Attack-Defense
- https://github.com/mishmashclone/infosecn1nja-AD-Attack-Defense
- https://github.com/nadeemali79/AD-Attack-Defense
- https://github.com/retr0-13/AD-Attack-Defense
- https://github.com/sunzu94/AD-Attack-Defense
- https://github.com/tataev/Security