Pentest Active Directory for Openclaw

An automated security assessment tool for mapping and validating Active Directory identity attack paths and privilege escalation routes.

0x-professor
v0.1.0
Mar 1, 2026
1
2.1k
0

Install & Download

1. ClawHub CLI

The fastest way to install a skill directly from the registry.

npx clawhub@latest install pentest-active-directory

2. Manual Installation

Copy the skill folder to one of these locations

Global
~/.openclaw/skills/
Workspace
<project>/skills/

Priority: Workspace > Local > Bundled

3. Prompt Installation

Copy this prompt to OpenClaw to install it automatically.

Help me install pentest-active-directory using Clawhub. If Clawhub is not installed, install it first (npm i -g clawhub).

Prefer to download?

Get the raw skill files in a ZIP archive.

What is Pentest Active Directory?

Pentest Active Directory is a robust security testing skill designed to systematically identify and validate vulnerabilities within Active Directory environments. By focusing on identity attack paths—such as Kerberoasting, NTLM relaying, and delegation abuse—this skill enables security professionals to discover how attackers might move laterally or escalate privileges in a network. As a core component of Openclaw Skills, it bridges the gap between raw data collection and actionable security intelligence.

The tool is built with a focus on compliance and safety, adhering to industry-standard frameworks like PTES and MITRE ATT&CK. It ensures that all testing is performed within a strictly defined scope, making it an essential asset for internal audits, red teaming exercises, and continuous security monitoring within complex corporate infrastructures.

Pentest Active Directory Use Cases

  • Identifying misconfigured Active Directory permissions that lead to privilege escalation.
  • Mapping lateral movement paths across domain controllers and joined workstations.
  • Auditing Kerberos configurations for vulnerabilities like Kerberoasting and AS-REP roasting.
  • Validating AD delegation settings to prevent unauthorized account takeovers.

How Pentest Active Directory Works

  1. Scope Definition: The process begins by ingesting a scope configuration to ensure all testing activities remain within authorized target ranges.
  2. Identity Mapping: The skill performs reconnaissance on the AD environment to map relationships between users, groups, and computers.
  3. Vulnerability Analysis: It evaluates the environment for known attack patterns, including relay opportunities and delegation flaws.
  4. Schema-Based Reporting: Discovered findings are formatted into a standardized JSON schema, including reproducible proof-of-concept steps.
  5. Artifact Export: Final findings and attack path maps are exported as deterministic files for integration with other Openclaw Skills or reporting tools.

Pentest Active Directory Setup

To get started with this skill, ensure you have the necessary environment and authorization. Use the following command structure to initialize a dry run:

python skills/pentest-active-directory/scripts/active_directory.py --scope scope.json --target <target> --input <path> --output <path> --format json --dry-run

For live execution, the --i-have-authorization flag must be explicitly passed to comply with ethical security testing standards.

Pentest Active Directory Data Schema & Taxonomy

The skill generates structured artifacts to facilitate automated analysis and reporting within the Openclaw Skills ecosystem:

File Name Purpose
ad-findings.json Contains technical details of vulnerabilities following the canonical finding schema.
ad-attack-paths.json A graph-ready representation of privilege escalation and lateral movement routes.
ad-report.json A synthesized summary of the assessment results for documentation.

Pentest Active Directory Advanced Features

  • Strict adherence to PTES Stage 6 and MITRE ATT&CK (TA0006, TA0008) methodologies.
  • Built-in safety gates requiring explicit authorization flags for non-dry-run executions.
  • Full compatibility with shared schemas for multi-agent autonomous pentesting workflows.
  • Generation of deterministic artifacts for seamless downstream data consumption.

SKILL.md


Loading

Related Openclaw Skills

METADATA

Github Stars: 0
forks: 0

Featured*