unSafe.sh - 不安全
我的收藏
今日热榜
公众号文章
导航
Github CVE
Github Tools
编码/解码
文件传输
Twitter Bot
Telegram Bot
Search
Rss
黑夜模式
Credential Dumping: GMSA
文章介绍了ReadGMSAPassword攻击技术,通过滥用配置错误的Group Managed Service Accounts (gMSA)获取其密码。攻击者可利用提取的密码进行横向移动、权限提升和持久化操作。文章还探讨了gMSA的工作机制、关键属性及防御措施。...
2025-4-6 11:49:47 | 阅读: 42 |
收藏
|
Hacking Articles - www.hackingarticles.in
gmsa
passwords
komal
security
msds
Shadow Credentials Attack
这篇文章介绍了Shadow Credentials攻击技术,该技术通过利用Active Directory Certificate Services(AD CS)的漏洞,在目标用户的msDS-KeyCredentialLink属性中注入自定义证书,从而实现持久访问。文章详细讲解了实验室设置、攻击方法(如AS-REP Roasting和PKINIT工具)、检测机制(如Kerberos TGT请求异常和AD对象修改事件)以及缓解措施(如加强访问控制、实施多因素认证等)。...
2025-2-12 17:7:8 | 阅读: 36 |
收藏
|
Hacking Articles - www.hackingarticles.in
msds
shadow
ignite
Abusing AD Weak Permission Pre2K Compatibility
这篇文章探讨了Pre2K Active Directory配置错误的问题及其在Windows环境中的常见原因。通过利用默认密码设置和特定工具(如pre2k和nxc),攻击者可以获取域控制器访问权限。建议禁用旧协议(如SMBv1、NTLM)、更新系统、定期审核Active Directory以及迁移旧应用到更安全平台以减少风险。...
2025-2-8 19:37:24 | 阅读: 33 |
收藏
|
Hacking Articles - www.hackingarticles.in
pre2k
windows
nxc
ignite
AD Recon: Kerberos Username Bruteforce
In this post, w...
2025-1-30 10:48:37 | 阅读: 38 |
收藏
|
Hacking Articles - www.hackingarticles.in
ignite
rubeus
kerbrute
passwords
Credential Dumping: AD User Comment
In this article, we shall explore different tools & techniques that help us enumera...
2025-1-29 11:25:15 | 阅读: 20 |
收藏
|
Hacking Articles - www.hackingarticles.in
divya
passwords
nxc
Diamond Ticket Attack: Abusing kerberos Trust
The Diamond Ticket attack represents a sophisticated escalation in Active Directory...
2025-1-27 11:14:32 | 阅读: 19 |
收藏
|
Hacking Articles - www.hackingarticles.in
sanjeet
diamond
privileges
attacker
ignite
Abusing AD-DACL: AddSelf
In this post, we will explore the exploitation of Discretionary Access Control List...
2025-1-8 16:16:59 | 阅读: 30 |
收藏
|
Hacking Articles - www.hackingarticles.in
addself
shreya
aarav
backup
windows
Active Directory Pentesting Using Netexec Tool: A Complete Guide
Active Directory (AD) penetration testing is an essential part of the security asse...
2024-12-28 09:38:34 | 阅读: 58 |
收藏
|
Hacking Articles - www.hackingarticles.in
nxc
raj
t1087
netexec
retrieves
Abusing AD-DACL: WriteOwner
In this post, we will explore the exploitation of Discretionary Access Control List...
2024-12-11 21:52:24 | 阅读: 18 |
收藏
|
Hacking Articles - www.hackingarticles.in
writeowner
aaru
sakshi
ankur
windows
Abusing AD-DACL: WriteDacl
In this post, we will explore the exploitation of Discretionary Access Control List...
2024-12-5 16:4:30 | 阅读: 17 |
收藏
|
Hacking Articles - www.hackingarticles.in
writedacl
rudra
windows
aarti
komal
Abusing AD-DACL: GenericWrite
In this post, we will explore the exploitation of Discretionary Access Control List...
2024-11-27 16:7:8 | 阅读: 35 |
收藏
|
Hacking Articles - www.hackingarticles.in
anuradha
windows
krishna
bloodhound
Abusing AD-DACL: AllExtendedRights
In this post, w...
2024-11-14 16:43:55 | 阅读: 37 |
收藏
|
Hacking Articles - www.hackingarticles.in
kavish
geet
windows
bloodhound
Abusing AD-DACL: ForceChangePassword
In this post, w...
2024-11-14 15:46:47 | 阅读: 29 |
收藏
|
Hacking Articles - www.hackingarticles.in
aarti
raj
windows
bloodhound
Abusing AD-DACL : Generic ALL Permissions
In this post, we explore the exploitation of Discretionary Access Control Lists (DA...
2024-10-18 02:16:33 | 阅读: 24 |
收藏
|
Hacking Articles - www.hackingarticles.in
komal
vipin
windows
attacker
nishant
OSINT : User Privacy in Linux
Linux telemetry involves gathering and sending data from a Linux-based system to an...
2024-9-25 01:57:57 | 阅读: 31 |
收藏
|
Hacking Articles - www.hackingarticles.in
gnome
gsettings
flatpak
permanently
proton
A Detailed Guide on Feroxbuster
Feroxbuster is a robust tool designed to identify directories and files on web serv...
2024-9-12 13:19:34 | 阅读: 31 |
收藏
|
Hacking Articles - www.hackingarticles.in
feroxbuster
burp
recursion
slash
MSSQL for Pentester: NetExec
NetExec (nxc) is a powerful network exploitation tool developed as a modern success...
2024-8-24 21:33:13 | 阅读: 53 |
收藏
|
Hacking Articles - www.hackingarticles.in
nxc
ignite
windows
987
Penetration Testing on MYSQL (Port 3306)
MySQL is an ope...
2024-8-6 20:55:19 | 阅读: 20 |
收藏
|
Hacking Articles - www.hackingarticles.in
auxiliary
machine
username
rhosts
database
WinRM Penetration Testing
Windows Remote Management (WinRM) is a protocol developed by Microsoft for remotely...
2024-7-16 00:9:20 | 阅读: 32 |
收藏
|
Hacking Articles - www.hackingarticles.in
remote
windows
powershell
auxiliary
987
Reel HackTheBox Walkthrough
SummaryReel is a windows Active Directory machine and is considered as a hard box...
2024-5-9 20:30:9 | 阅读: 37 |
收藏
|
Hacking Articles - www.hackingarticles.in
claire
tom
rtf
bloodhound
windows
Previous
3
4
5
6
7
8
9
10
Next