Nullpath

hideandsec.sh

reference organizationreferenceactive-directoryshadow-credentialspki updated 06 Sept 2026 · 1 min

hideandsec.sh

hideandsec.sh is a (French) security research blog known for deep AD / PKI attack research — most notably the Shadow Credentials work (msDS-KeyCredentialLink key-trust abuse) that this wiki’s shadow-credentials and pkinit-unpac-the-hash pages are built on, plus PKINIT and Kerberos pre-auth research.

Key contributions referenced in this wiki

Why it matters for this wiki

  • It is the technique source for the shadow-credential / PKINIT attack family — the “plant a cert, become the account, read their hash” play.

References