SkillAgentSearch skills...

PassTheCert

Proof-of-Concept tool to authenticate to an LDAP/S server with a certificate through Schannel

Install / Use

/learn @AlmondOffSec/PassTheCert
About this skill

Quality Score

0/100

Supported Platforms

Universal

README

PassTheCert

Sometimes, Domain Controllers do not support PKINIT. This can be because their certificates do not have the Smart Card Logon EKU. However, several protocols, including LDAP, support Schannel, thus authentication through TLS. We created a small Proof-of-Concept tool that allows authenticating against an LDAP/S server with a certificate to perform different attack actions.

More information in the accompanying blog post.

This repository contains a C# version, by the-useless-one, and a Python version, by ThePirateWhoSmellsOfSunflowers / drm (@lowercase_drm)

Related Skills

View on GitHub
GitHub Stars733
CategoryDevelopment
Updated5d ago
Forks89

Languages

C#

Security Score

95/100

Audited on Mar 16, 2026

No findings