attack_lib.py contains the end-to-end code for generating a DataFrame of attack logins that simulates a particular lateral movement attack path. Invoke synthesize_attack(...) with a DataFrame of ...
After Mimikatz has been dropped onto a Domain Controller and executed with Domain Admin privileges the following simple command can be used to perform the exploit.