In this video, I explain how attackers use stolen domain user credentials to gain access inside an Active Directory environment. You’ll see how tools like PsExec, WMIExec, and SMBExec can be used for lateral movement and remote command execution.
Writeup : https://sites.google.com/view/hackerlabs-stolen-credentials