GPEN › Domain Escalation and Persistence
This domain covers post-exploitation tradecraft on Windows/Active Directory: privilege escalation to Domain Admin, credential abuse (Kerberos, DCSync, LSASS), and durable persistence. GPEN tests whether you can select methods that survive reboots and password resets, and recognize why artifacts like backdoor accounts, Golden Tickets, and Skeleton Keys are dangerous if left behind.
GPEN Domain Escalation and Persistence — All 27 Questions
Every question in this domain with answers and detailed explanations.