September 7, 2026
Active Directory Basics | TryHackMe Writeup
I spent years hearing βActive Directoryβ in cybersecurity content. I never really understood it. Until today.
By Pathanbasheerkhan
2 min read
That changed when I sat down and actually went through the Active Directory Basics room on TryHackMe. And honestly? It's one of those things where once you get it, you can't un-see it.
Here's what clicked for me.
The problem Active Directory solves
Picture this. You're the IT guy at a company. 600 employees. 600 laptops. Your boss walks in and says "I need everyone's password to be at least 12 characters by tomorrow."
Without Active Directory, you're going machine by machine. Manually. 600 times.
That's the world before AD. And that's exactly the pain it was built to fix.
Active Directory is Microsoft's system for managing every user, computer, and resource in a network from one central place. One machine β the Domain Controller β rules everything.
What actually lives inside AD
Everything in Active Directory is called an "object." Your user account β object. The office laptop β object (with a $ at the end of its name, weirdly). The finance department group β also an object.
The real power is in Group Policy Objects β or GPOs. Imagine being able to tell every computer in the building: "Lock the screen after 5 minutes, enforce complex passwords, disable USB ports."
Done. From one place. Instantly.
The authentication bit (this one actually matters)
Two ways AD handles logins:
Kerberos β the modern one. Ticket-based. You log in, get a ticket, use the ticket to access things. Clean, secure.
NetNTLM β the old one. Still around for legacy systems. More vulnerable β it's the one attackers love to abuse.
Trees, Forests, Trusts β the part that confused me
A domain is one company's AD. A tree is multiple connected domains. A forest is multiple trees. Trusts let users from one domain access resources in another.
One office = domain. Company with many offices = tree. Corporation owning multiple companies = forest.
Once I thought about it that way, it clicked.
Why this matters for hacking
Active Directory is in almost every corporate network on the planet. And if you compromise the Domain Controller β you own everything. Every user. Every machine. Every secret.
That's why understanding AD isn't just for sysadmins. It's step one for anyone going into offensive security.
You can't attack what you don't understand first.
Connect with me: LinkedIn β Pathan Basheer Khan: https://www.linkedin.com/in/pathan-basheer-khan/ TryHackMe Profile: https://tryhackme.com/p/pathan-33