Repo de révision pour l'examen de cybersécurité forensic / pentest AD. Internet autorisé le jour J ; ce dépôt sert de mémoire externe (commandes, runbooks, journal de rapport).
- playbooks/RUNBOOK-CHRONOLOGIQUE.md — fil principal : toutes les étapes dans l'ordre, commandes complètes
- exam-journal/JOURNAL_EXAMEN.md — noter chaque action (base du rapport final)
- EXAM-CHECKLIST.md — cocher les 14 challenges / flags
| Problème | Fichier |
|---|---|
| Kerberos / DNS / FQDN | cheatsheets/kerberos-troubleshooting.md |
| Modes hashcat | cheatsheets/hashcat-modes.md |
| Outils Exegol | cheatsheets/exegol-commands.md |
| Fichier | Usage |
|---|---|
| docs/RECAP-COMMANDES-TP-CELESTINA.md | Synthèse chronologique du TP (discuss_gemini distillé) |
| docs/NOTES-PENTEST-REFERENCE.md | Patterns validés (notes-pentest-brutes → Celestina) |
| docs/notes-pentest-brutes.md | Notes détaillées camarade (4 flags, même toolchain) |
| docs/discuss_gemini.md | Journal brut conversation TP |
| docs/ENONCE_TP_CELESTINA.md | Liste des challenges |
| Fichier | Sujet |
|---|---|
| playbooks/00-setup-vpn-dns.md | VPN, DNS, hosts |
| playbooks/01-recon-scan-smb.md | Scan SMB, partages, RDP |
| playbooks/02-bloodhound-cli.md | BloodHound sans GUI |
| playbooks/03-kerberos-roasting.md | AS-REP + Kerberoast |
| playbooks/04-ldap-secrets.md | description LDAP, SYSVOL, GPP |
| playbooks/05-lateral-ptH-lsass.md | PTH, lsassy, PtT |
| playbooks/06-shadow-credentials.md | certipy shadow |
| playbooks/07-delegation-constrained.md | getST / S4U |
| playbooks/08-delegation-unconstrained.md | Unconstrained delegation |
| playbooks/09-pivot-reseau-cache.md | Réseau 10.37.13.0/24 |
- docs/REVISION_AD_TP.md — concepts AD (Kerberos, ACL, LAPS…)
- docs/RAPPORT_AUDIT_FINAL_CELESTINA.md — exemple de rapport
- exam-journal/RAPPORT-FINAL-TEMPLATE.md — template à remplir après l'examen
scripts/setup-dns.sh
scripts/gen-targets-fqdn.sh
scripts/grep-bh-rights.sh
scripts/roast-and-crack.sh