The Hacker Recipes said remote SID History injection from Linux was impossible. pySIDHistory proves otherwise with two methods: DRSUAPI and DSInternals.
Building a cross-platform GoldenGMSA tool by reverse engineering Windows cryptographic DLLs and implementing NIST SP800-108 KDF from scratch
Complete exploitation of a Windows Active Directory machine highlighting Kerberos delegation RBCD techniques
Comprehensive guide to Active Directory exploitation with NetExec at the LeHack 2025 workshop
Complete Active Directory lab exploitation with Netexec - Advanced pentesting techniques