| skipped 12 lines |
13 | 13 | | "sevenkingdoms\\cersei.lannister" |
14 | 14 | | ], |
15 | 15 | | "Remote Desktop Users" : [ |
16 | | - | "sevenkingdoms\\Small Council" |
| 16 | + | "sevenkingdoms\\Small Council", |
| 17 | + | "sevenkingdoms\\Baratheon" |
17 | 18 | | ] |
18 | | - | } |
| 19 | + | }, |
| 20 | + | "scripts" : [], |
| 21 | + | "vulns" : [] |
19 | 22 | | }, |
20 | 23 | | "srv01" : { |
21 | 24 | | "hostname" : "casterlyrock", |
| skipped 9 lines |
31 | 34 | | }, |
32 | 35 | | "Remote Desktop Users" : [ |
33 | 36 | | "sevenkingdoms\\Lanister" |
34 | | - | ] |
| 37 | + | ], |
| 38 | + | "scripts" : [], |
| 39 | + | "vulns" : [] |
35 | 40 | | }, |
36 | 41 | | "dc02" : { |
37 | 42 | | "hostname" : "winterfell", |
| skipped 10 lines |
48 | 53 | | "Remote Desktop Users" : [ |
49 | 54 | | "north\\Stark" |
50 | 55 | | ] |
51 | | - | } |
| 56 | + | }, |
| 57 | + | "scripts" : [ |
| 58 | + | "asrep_roasting.ps1", |
| 59 | + | "constrained_delegation_use_any.ps1", |
| 60 | + | "constrained_delegation_kerb_only.ps1", |
| 61 | + | "ntlm_relay.ps1", |
| 62 | + | "responder.ps1", |
| 63 | + | "gpo_abuse.ps1" |
| 64 | + | ], |
| 65 | + | "vulns" : [] |
52 | 66 | | }, |
53 | 67 | | "srv02" : { |
54 | 68 | | "hostname" : "castelblack", |
| skipped 12 lines |
67 | 81 | | "north\\Stark" |
68 | 82 | | ] |
69 | 83 | | }, |
| 84 | + | "scripts" : [], |
| 85 | + | "vulns" : ["openshares"], |
70 | 86 | | "mssql":{ |
71 | 87 | | "sa_password": "Sup1_sa_P@ssw0rd!", |
72 | 88 | | "svcaccount" : "sql_svc", |
| skipped 39 lines |
112 | 128 | | "Remote Desktop Users" : [ |
113 | 129 | | "essos\\Targaryen" |
114 | 130 | | ] |
115 | | - | } |
| 131 | + | }, |
| 132 | + | "scripts" : [], |
| 133 | + | "vulns" : ["ntlmdowngrade"] |
116 | 134 | | }, |
117 | 135 | | "srv03" : { |
118 | 136 | | "hostname" : "braavos", |
| skipped 10 lines |
129 | 147 | | "Remote Desktop Users" : [ |
130 | 148 | | "essos\\Dothraki" |
131 | 149 | | ], |
| 150 | + | "scripts" : [], |
| 151 | + | "vulns" : ["openshares"], |
132 | 152 | | "mssql":{ |
133 | 153 | | "sa_password": "sa_P@ssw0rd!Ess0s", |
134 | 154 | | "svcaccount" : "sql_svc", |
| skipped 64 lines |
199 | 219 | | "GenericAll_khal_viserys" : {"for": "khal.drogo", "to": "viserys.targaryen", "right": "GenericAll", "inheritance": "None"}, |
200 | 220 | | "GenericAll_spy_jorah" : {"for": "Spys", "to": "jorah.mormont", "right": "GenericAll", "inheritance": "None"}, |
201 | 221 | | "GenericAll_khal_esc4" : {"for": "khal.drogo", "to": "CN=ESC4,CN=Certificate Templates,CN=Public Key Services,CN=Services,CN=Configuration,DC=essos,DC=local", "right": "GenericAll", "inheritance": "None"}, |
202 | | - | "WriteProperty_petyer_domadmin" : {"for": "viserys.targaryen", "to": "jorah.mormont", "right": "WriteProperty", "inheritance": "All"} |
| 222 | + | "WriteProperty_petyer_domadmin" : {"for": "viserys.targaryen", "to": "jorah.mormont", "right": "WriteProperty", "inheritance": "All"}, |
| 223 | + | "GenericWrite_DragonsFriends_braavos" : {"for": "DragonsFriends", "to": "braavoos$", "right": "GenericWrite", "inheritance": "None"} |
203 | 224 | | }, |
204 | 225 | | "users" : { |
205 | 226 | | "daenerys.targaryen" : { |
| skipped 225 lines |
431 | 452 | | }, |
432 | 453 | | "Small Council" : { |
433 | 454 | | "path" : "OU=Crownlands,DC=sevenkingdoms,DC=local" |
| 455 | + | }, |
| 456 | + | "DragonStone" : { |
| 457 | + | "path" : "OU=Crownlands,DC=sevenkingdoms,DC=local" |
| 458 | + | }, |
| 459 | + | "KingsGuard" : { |
| 460 | + | "path" : "OU=Crownlands,DC=sevenkingdoms,DC=local" |
434 | 461 | | } |
435 | 462 | | }, |
436 | 463 | | "domainlocal" : { |
| skipped 8 lines |
445 | 472 | | ] |
446 | 473 | | }, |
447 | 474 | | "acls" : { |
448 | | - | "GenericAll_tywin_cersei" : {"for": "tywin.lannister", "to": "cersei.lannister", "right": "GenericAll", "inheritance": "None"}, |
449 | | - | "GenericAll_varys_domadmin" : {"for": "lord.varys", "to": "Domain Admins", "right": "GenericAll", "inheritance": "None"}, |
450 | | - | "GenericAll_stanis_dc" : {"for": "stannis.baratheon", "to": "kingslanding$", "right": "GenericAll", "inheritance": "None"}, |
451 | | - | "WriteProperty_petyer_domadmin" : {"for": "petyer.baelish", "to": "Domain Admins", "right": "WriteProperty", "inheritance": "All"}, |
452 | | - | "self-self-membership-on-group_tyron_domadmin" : {"for": "tyron.lannister", "to": "Domain Admins", "right": "Ext-Self-Self-Membership", "inheritance": "None"}, |
453 | | - | "writeproperty-self-membership_stanis_stannis" : {"for": "stannis.baratheon", "to": "Domain Admins", "right": "Ext-Write-Self-Membership", "inheritance": "All"}, |
454 | 475 | | "forcechangepassword_tywin_jaime" : {"for": "tywin.lannister", "to": "jaime.lannister", "right": "Ext-User-Force-Change-Password", "inheritance": "None"}, |
455 | | - | "write_on_group_pycelle_domadmin" : {"for": "maester.pycelle", "to": "Domain Admins", "right": "WriteOwner", "inheritance": "None"}, |
456 | | - | "GenericAll_group_acrrosdom_domadmin" : {"for": "AcrossTheNarrowSea", "to": "Domain Admins", "right": "GenericAll", "inheritance": "None"}, |
457 | | - | "GenericWrite_on_user_jaimie_cersei" : {"for": "jaime.lannister", "to": "cersei.lannister", "right": "GenericWrite", "inheritance": "None"}, |
458 | | - | "Writedacl_tywin_council" : {"for": "tywin.lannister", "to": "Small Council", "right": "WriteDacl", "inheritance": "None"} |
| 476 | + | "GenericWrite_on_user_jaimie_joffrey" : {"for": "jaime.lannister", "to": "joffrey.baratheon", "right": "GenericWrite", "inheritance": "None"}, |
| 477 | + | "Writedacl_joffrey_tyron" : {"for": "joffrey.baratheon", "to": "tyron.lannister", "right": "WriteDacl", "inheritance": "None"}, |
| 478 | + | "self-self-membership-on-group_tyron_small_council" : {"for": "tyron.lannister", "to": "Small Council", "right": "Ext-Self-Self-Membership", "inheritance": "None"}, |
| 479 | + | "addmember_smallcouncil_DragonStone" : {"for": "Small Council", "to": "DragonStone", "right": "Ext-Write-Self-Membership", "inheritance": "All"}, |
| 480 | + | "write_owner_dragonstone_kingsguard" : {"for": "DragonStone", "to": "KingsGuard", "right": "WriteOwner", "inheritance": "None"}, |
| 481 | + | "GenericAll_kingsguard_stanis" : {"for": "KingsGuard", "to": "stannis.baratheon", "right": "GenericAll", "inheritance": "None"}, |
| 482 | + | "GenericAll_stanis_dc" : {"for": "stannis.baratheon", "to": "kingslanding$", "right": "GenericAll", "inheritance": "None"}, |
| 483 | + | "GenericAll_group_acrrosdom_varys" : {"for": "AcrossTheNarrowSea", "to": "lord.varys", "right": "GenericAll", "inheritance": "None"}, |
| 484 | + | "GenericAll_varys_domadmin" : {"for": "lord.varys", "to": "Domain Admins", "right": "GenericAll", "inheritance": "None"}, |
| 485 | + | "GenericAll_varys_domadmin_holder" : {"for": "lord.varys", "to": "CN=AdminSDHolder,CN=System,DC=sevenkingdoms,DC=local", "right": "GenericAll", "inheritance": "None"} |
459 | 486 | | }, |
460 | 487 | | "users" : { |
461 | 488 | | "tywin.lannister" : { |
| skipped 103 lines |