Building a vulnerable Active Directory home lab
Tools: VirtualBox, Windows Server 2019, Kali Linux, BloodHound, Mimikatz
- Problem
- The objective of this home lab was to identify and exploit common Active Directory misconfigurations, analyze attack paths using BloodHound, and observe how these weaknesses could lead to a full domain compromise.
- Steps
- Built a lab with a domain controller and two workstations, deliberately introduced common misconfigurations, such as a Kerberoastable service account, unconstrained delegation, and weak GPO permissions. Then, used BloodHound to map the resulting attack paths and Mimikatz to carry out a full domain compromise.
- Result
- Documented three separate paths to Domain Admin and wrote a home lab guide that two classmates later used to build and study their own labs.
- What I learned
- Reading about Kerberoasting and watching BloodHound draw the attack graph are two very different levels of understanding. Visually seeing the path was helpful.