← All Lessons
Premium
TechniqueActive Directory
DCOM Lateral Execution
DCOM lateral execution abuses Distributed COM, Windows' mechanism for driving one machine's software objects from another, to run commands on a remote host by calling a legitimate application's own methods. This lesson explains why the remote server trusts the call, what the attacker gains over louder tools like PsExec, and how to communicate the risk in interviews, reports, and stakeholder conversations.
Sign in or upgrade to unlock the full premium library.
What you'll learn
- DCOM (Distributed Component Object Model)
- CLSID and ProgID
- Execution-capable DCOM objects
- DCOM launch and activation rights
- Living-off-the-land execution
- dcomexec.py
What premium includes
- All 78 lessons: AD techniques, professional skills, each with interview answers and study kits
- Complete study kit for every lesson: quizzes, flashcards, and briefs
- Every learning track with full structured progression
- All 12 attack paths: full compromise walkthroughs for interviews and reports
- New lessons and attack paths added regularly