TestimoX

API Reference

Class

ShadowCredentialsRiskService

Namespace ADPlayground.Security
Assembly ADPlayground
Modifiers static

Detects principals with WriteProperty on msDS-KeyCredentialLink for privileged users (adminCount=1) and DC computer objects. Low-priv: reads schema and ACLs via LDAP.

Inheritance

  • Object
  • ShadowCredentialsRiskService

Methods

public static View Evaluate(String domainName) #
Returns: View

Evaluates shadow credential risks by inspecting ACLs on privileged users (adminCount=1) and DC computers.

Parameters

domainName System.String requiredposition: 0
DNS name of the Active Directory domain.

Returns

Aggregated View with findings.