Hacking techniques for AD: “state of the art” (but scary!) with possible mitigation (when possible) + a few new methods…
https://github.com/infosecn1nja/AD-Attack-Defense
https://specterops.io/resources/research-and-development
https://github.com/wavestone-cdt/AD-security-workshop
https://www.labofapenetrationtester.com/
https://github.com/fireeye/commando-vm
For GPO Audit : https://github.com/l0ss/Grouper2
Securing AD:
http://video.ch9.ms/sessions/teched/na/2014/DCIM-B213.pptx
Authentication silos and more: https://www.sstic.org/user/abordes
MS white-paper best practices to secure AD: http://aka.ms/bpsadtrd
Authentication mechanism assurance: https://technet.microsoft.com/en-us/library/dd378897.aspx