<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Domain Trust on IamWin's Blog</title><link>https://blog.iamwin.xyz/tags/domain-trust/</link><description>Recent content in Domain Trust on IamWin's Blog</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Mon, 08 Jun 2026 01:00:00 -0500</lastBuildDate><atom:link href="https://blog.iamwin.xyz/tags/domain-trust/index.xml" rel="self" type="application/rss+xml"/><item><title>Active Directory Domain Trust: Abusing Child-to-Parent Trust</title><link>https://blog.iamwin.xyz/posts/trustad/</link><pubDate>Mon, 08 Jun 2026 01:00:00 -0500</pubDate><guid>https://blog.iamwin.xyz/posts/trustad/</guid><description>&lt;h2 id="introduction"&gt;&lt;strong&gt;INTRODUCTION&lt;/strong&gt;&lt;/h2&gt;
&lt;p&gt;Domain Trust relationships in Active Directory are fundamental to allowing users from one domain to access resources in other domains. However, from a Red Teaming perspective, these relationships represent an excellent vector for privilege escalation and lateral movement.&lt;/p&gt;
&lt;p&gt;In this post, we will explore how to abuse a &lt;strong&gt;Child-to-Parent&lt;/strong&gt; trust relationship within the same forest to escalate privileges from a fully compromised subdomain to the root domain.&lt;/p&gt;
&lt;hr&gt;
&lt;h2 id="key-concepts"&gt;&lt;strong&gt;KEY CONCEPTS&lt;/strong&gt;&lt;/h2&gt;
&lt;h3 id="what-is-a-domain-trust"&gt;&lt;strong&gt;What is a Domain Trust?&lt;/strong&gt;&lt;/h3&gt;
&lt;p&gt;It is a trust mechanism between two domains that enables cross-domain authentication. Its key properties are:&lt;/p&gt;</description></item></channel></rss>