Domain Enumeration
Get-NetDomain ## Gather information for the current users domain.
Get-NetDomain -Domain myhackingblog.local ##Gather information on myhackingblog.local
Get-DomainSID ## Get the current domain's SID.
Get-NetDomainController -Domain myhackingblog.local
Get-NetUser -Domain myhackingblog.local ## Get AD information for all users
Get-NetUser -UserName thecorrectjames ## Get information for a specific user.
Get-NetGroup *admin*
Get-NetComputer -FullData
Find-LocalAdminAccess -Verbose ##Find all computers the current user has local adminaccess
Get-NetSession -ComputerName myhackingblog-dc ##List sessions on a computer
Invoke-UserHunter -CheckAccess
Get-NetDomainTrust
Get-DomainTrust -API ## Enumerate domain trusts with the DsEnumerateDomainTrusts API
Get-DomainTrust ## Enumerate domain trusts with LDAP
Get-NetForest
Get-NetForestDomain
Last updated