logo
Red tradecraft
Finding and pulling the data
  • Privacy greenhouse
  • Defence blues
  • Purple crossroads
  • Indigo observatory
  • Contact
Initializing search
    • An adversary mind map, one of many
      • Footing
      • What is there
      • Findings
      • Mapping
      • Turning access into position
      • What changed, and what it cost
      • Revising, then pricing
      • Converting position into value
        • Data exfiltration and pacing operational egress
        • Extracting intelligence from configuration and system state
        • Making it count
        • Model extraction via query interfaces
        • Knowing what to take
          • The collection landscape
          • Finding and pulling the data
            • Active Directory enumeration for collection
            • Credential harvesting
            • SaaS and cloud platform harvesting
          • Finding and pulling the data
            • Active Directory enumeration for collection
            • Credential harvesting
            • SaaS and cloud platform harvesting
          • From access to staged data
        • Getting it out
        • Steganography
      • Assessing, then deciding
    • The grounds
    • Ankh-Morpork: the city leaves a footprint
    • Fungolia earthworks
    • Unseen University Power & Light Co.
    • The Scarlet Semaphore
    • TryHackMe rooms
    • Root-Me challenges
    • RIPE NCC Academy labs

    Finding and pulling the dataΒΆ

    Practical procedures for AD enumeration, credential extraction, and SaaS data harvesting. Each runbook covers one technique from initial checks through execution to cleanup.

    • Active Directory enumeration for collection
    • Credential harvesting
    • SaaS and cloud platform harvesting
    2026-07-30 17:57
    © Copyright 2025, TyMyrddin.
    Created using Sphinx 7.2.6. and Sphinx-Immaterial

    Made with love by Ty Myrddin, 2026, with a forest garden fostered by /ut7