Pentest User Interface (PentestUI) is an automated web interface built with Django. It provides a convenient platform for performing various Active Directory enumeration methods and attacks. Additionally, it allows users to access the results of these enumeration methods or attacks on the Active Directory structure. This can be a valuable resource for security professionals and penetration testers conducting assessments and tests on Active Directory environments while simplifying the process of managing and reviewing the outcomes of these activities.
Instalation
If not installed libpq-dev:
Features
Sensitive Data Search
· Search sensitive Data in Active Directory domain structure.
DC Enumeration
· List Domain Controllers(DC) in Active Directory domain structure.
DFS Enumeration
· List Distributed File System Shares(DFS)Enumeration in Domain.
DNS Zone Enumeration
· Display DNS Zone in Domain structure.
SPN User Enumeration
· List Service Principal Name (SPN) users in Active Directory domain structure.
Domain Admin user Enumeration
· List users of admin authority in Active Directory domain structure.
Pre-Auth users Enumeration
· List Kerberos pre-authentication users in Active Directory domain structure.
As-Rep Roasting Attack
Password Spray Attack
Kerberoasting Attack