The Active Directory lab from @Mayfly / Orange Cyberdefense lets you play out and test all your wildest AD hacks.

It's a virtualized setup, complete with AD controllers, CS server, trusts, and lots of stupid mistakes to play around with. Find it at
https://github.com/Orange-Cyberdefense/GOAD

Some time ago I created a deployment script for it, as it was a bit tricky for me to get running. It's for Ubuntu 22.04 LTS. Find that at https://github.com/lkarlslund/deploy-goad/

There's a loooooong series of walkthroughs about GOAD from the author, and you can (and should) take at look at that too https://mayfly277.github.io/

... and I should get that lab up and running again. Thanks for your efforts, @Mayfly!

GitHub - Orange-Cyberdefense/GOAD: game of active directory

game of active directory. Contribute to Orange-Cyberdefense/GOAD development by creating an account on GitHub.

GitHub
@lkarlslund @Mayfly @ericazelic hmmm - is there the opposite of this? an intentionally hardened version with no known issues?
@mikeymikey @lkarlslund @ericazelic
Could be a good idea.
@Mayfly @mikeymikey @ericazelic can't you just create at script that every AD admin can run and then the AD is safe? 😂