A pentesting tool that allows you to look for misconfigurations using the LDAP protocol and exploit some of those flaws using #Kerberos.
Functionality and features:
> Enum Domain Admin users
> Enum Domain users with Password Not Expire
> Enum Domain users with old password
> Enum Domain users with an interesting description
> Enum Domain users with Protecting Privileged Domain Accounts
> Enum Domain Controllers
> Enum Domain users with not the default encryption
> AS-REP Roastable
> Kerberoastable
> Password cracking with john (krb5tgs and krb5asrep)
Disclaimer: The intended use for the tool is strictly educational and should not be used for any other purpose.
Download link: https://github.com/SecuProject/ADenum