
HTB Stories - Unpacking CAPE and Active Directory Exploitation
Source: YouTube · Hack The Box · published Mar 8, 2025 · 1:10:29
The Certified Active Directory Pentest Expert (Cape) certification provides a comprehensive, hands-on deep dive into active directory penetration testing, designed for intermediate to advanced pentesters and defenders with foundational knowledge. It covers the full attack chain—from enumeration and footholding to privilege escalation, lateral movement, and post-exploitation—with a strong emphasis on modern attacks like Kerberos relays, trust attacks, and AD CS exploits. The course is structured to build on prior knowledge, especially from the CPTS path, and includes practical labs, detailed modules, and real-world reporting expectations.
Key Takeaways:
• Cape covers the full AD attack chain including enumeration, lateral movement, privilege escalation, and post-exploitation using tools like PowerView and CrackMapExec 2:00-2:57.
• The course emphasizes manual enumeration and understanding LDAP filters to enable effective tool usage and debugging 2:20-2:35.
• Trust attacks and AD CS exploits are highlighted as prevalent and valuable techniques, especially for gaining footholds through relay attacks or credential reuse 7:40-8:45.
• The exam requires a 10-day test period and a commercial-grade report; submissions are manually graded by Academy experts with actionable feedback, not AI 33:00-38:30.
• Students must complete the course path and pass a skills assessment before receiving a voucher; a free retake is available with a well-structured report 15:00-16:00.
Cape is ideal for those with a solid foundation in OS fundamentals, networking, and active directory theory, and it prepares learners for real-world AD pentesting or defensive roles by improving attack understanding and repo
Generate CPE Credits
Generate a professional CPE document from this video's transcript.
Estimated credit: 1 CPE hours
Estimate uses the video runtime (1 hour ≈ 1 CPE, rounded to the nearest 0.5, minimum 0.5, maximum 2.0). The final amount can be lower after review, never higher.
Topic: Cybersecurity. Commonly maps to: Security and Risk Management, Security Operations. Exact CISSP domains are assigned during generation.
Free account. One generation at a time, with a daily limit.
CPEBuddy is independent and not affiliated with or endorsed by ISC2, ISACA, or any certification body. Exports are formatted for common CPE submissions; acceptance is at your certification body's discretion.
Transcript Preview
First 800 characters of the transcript
all right hello everybody uh and Welcome to our uh AMA for the day uh I'm oxf and I'll be your host for the day uh today we're going to be doing a deep dive into hack the Box's latest certification the certified active directory pentest expert or Cape uh we'll be taking questions from the audience so get in the chat and send in the questions and we'll will uh try to make sure we get all those asked uh the main stars of the show today are going to be Mr Ben and OD and so uh we'll bring them on and uh start by having youall do a little introductions of yourselves um Ben everyone Ben here Mr Ben um pentester training developer for heck the Box Academy I was one of the I mean I wrote a lot of the modules and helped with a lot of different modules in the path and I also helped design the um exa…