pass-the-hash attack for windows privilege escalation
AIONSEC
0:00 / 0:00
pass-the-hash attack for windows privilege escalation
3 576 просмотров · 2 года назад
AIONSEC
5,34 тыс. подписчиков
3 576 просмотров · 2 года назад
NEW: I'm launching a course for security practitioners
If you're a threat hunter, detection engineer, or incident responder who wants to build your own AI-powered tools (no coding required) - check out "Mastering Agentic AI for Threat Hunting"
→ Join the waitlist for 20% off: https://aionsec.ai/course
---
in this lesson we perform a pass-the-hash attack to escalate our privilige:
we start off as a lower-level user
we discover a keepass database
we use smb to exfiltrate the database to our system
we use keepass2john to extract the database hash
we use hashcat to crack the database hash
we discover a ntlm hash inside of the database
we use the ntlm hash + pthwinexe to spawn a new shell on the target system as administrator
+_+_+_+_+_+_+_+_+_+_+_+_+_+_+_+_+_+_+_+_+_+_+_+_+
music: 'shop' from the undertale OST by toby fox
Karl Casey @ White Bat Audio
twitter: @faanross
#cybersecurity #hackthebox #ctf