Ross ROSS = Recommend OSS · open-source software intelligence for agents

safebuffer/vulnerable-AD

Create a vulnerable active directory that's allowing you to test most of the active directory attacks in a local lab observed · 2026-08-28

github.com/safebuffer/vulnerable-AD · PowerShell · MIT (permissive) observed · 2026-08-28

Health v2 · maintenance only

32/100

  • Activity 0
  • Release rhythm 35
  • Longevity 100

Flags: no_releases

How is this computed?

round(0.45*activity + 0.35*rhythm + 0.20*longevity); archived -> min(score, 10) — computed 2026-09-03. Adoption (stars, forks) is never an input.

  • gap_med: n/a
  • age_days: 2266
  • days_rel: n/a
  • days_push: 873
  • n_releases_24m: 0

Full methodology

Adoption not part of the score

2325 stars · 446 forks observed · 2026-08-28

What it is AI-extracted, prompt v1, taxonomy v1, 2026-08-30, confidence not recorded

A PowerShell script that configures a Windows Server domain controller into a deliberately vulnerable Active Directory environment for practicing AD attacks. It randomizes misconfigurations covering common attack techniques like Kerberoasting, DCSync, and Golden Ticket in a local lab.

Use cases

  • set up a vulnerable active directory lab for practicing AD attacks
  • practice kerberoasting and as-rep roasting locally
  • test pass-the-hash and pass-the-ticket techniques
  • learn active directory privilege escalation with ACL abuse
  • create a safe environment for red team training
  • practice DCSync and golden ticket attacks in a home lab
  • train on password spraying against a test domain

When to choose

  • you need a quick, scripted vulnerable AD domain for security training
  • you want broad coverage of common AD attack techniques in one lab
  • you already have a Windows Server domain controller to run it on

When to avoid

  • you need a production-hardened Active Directory setup
  • you cannot dedicate an isolated lab network or VM
  • you want guided tutorials rather than a randomized vulnerable configuration

Facets

cli-tool · maturity active

security penetration-testing developer-tools security penetration-testing self-hosted windows cli active-directory red-team vulnerable-lab powershell ad-attacks training-lab

1 source

Member repositories

RepositoryRoleHealth v2
safebuffer/vulnerable-ADmain32

For agents

markdown · JSON · MCP: product_card(name="safebuffer/vulnerable-AD")

Data as of 2026-08-30T08:39:29.467469+00:00 · Report a problem