PayloadsAllTheThings/Methodology and Resources
Processus Thief 885f8bdb8f Adding Hekatomb.py to DPAPI credentials stealing
Hekatomb is a python script that connects to LDAP directory to retrieve all computers and users informations.
Then it will download all DPAPI blob of all users from all computers.
Finally, it will extract domain controller private key through RPC uses it to decrypt all credentials.

More infos here : https://github.com/Processus-Thief/HEKATOMB
2022-09-20 16:56:07 +02:00
..
Active Directory Attack.md Update bloodyAD attacks 2022-09-06 19:13:34 +02:00
Bind Shell Cheatsheet.md Fix table of contents 2020-12-02 14:19:59 +01:00
Cloud - AWS Pentest.md Update Cloud - AWS Pentest.md 2022-05-05 08:48:55 -07:00
Cloud - Azure Pentest.md LAPS Access + Pass the Cert + Writeable folder 2022-05-31 11:57:44 +02:00
Cobalt Strike - Cheatsheet.md LFI2RCE - Picture Compression - SOCKS5 CS 2022-08-21 16:38:54 +02:00
Container - Docker Pentest.md Docker Escape cgroup 2022-08-05 12:26:31 +02:00
Escape Breakout.md LAPS Access + Pass the Cert + Writeable folder 2022-05-31 11:57:44 +02:00
Hash Cracking.md Removing potential DMCA material 2022-01-05 22:22:08 +01:00
Linux - Persistence.md Fix typo in Linux - Persistence.md 2021-07-02 16:18:35 -06:00
Linux - Privilege Escalation.md Added DirtyPipe to kernel exploits 2022-06-23 16:55:58 +02:00
Metasploit - Cheatsheet.md Sticky Notes Windows + Cobalt SMB 2020-10-16 11:35:15 +02:00
Methodology and enumeration.md Fix links and duplicated nmap and massscan examples 2020-12-13 04:50:59 +11:00
Miscellaneous - Tricks.md ADCS ESC7 Shell + Big Query SQL 2022-02-18 14:50:38 +01:00
MSSQL Server - Cheatsheet.md LAPS Access + Pass the Cert + Writeable folder 2022-05-31 11:57:44 +02:00
Network Discovery.md Fix(Docs): Correcting typos on the repo 2020-10-17 22:52:35 +02:00
Network Pivoting Techniques.md Capture a network trace with builtin tools 2022-08-15 15:02:29 +02:00
Office - Attacks.md DB2 Injection + ADCS 2021-08-10 23:00:19 +02:00
Powershell - Cheatsheet.md Powershell Cheatsheet 2021-11-06 19:14:47 +01:00
Reverse Shell Cheatsheet.md Merge pull request #501 from fantesykikachu/win-p3-revshell 2022-09-06 23:23:50 +02:00
Source Code Management.md Source Code Management 2022-08-18 10:43:01 +02:00
Subdomains Enumeration.md Update Subdomains Enumeration.md 2021-06-25 09:17:27 +02:00
Windows - AMSI Bypass.md DCOM exploitation and MSSQL CLR 2021-03-24 22:26:23 +01:00
Windows - Download and Execute.md Dependency Confusion + LDAP 2021-07-04 13:32:32 +02:00
Windows - Mimikatz.md Adding Hekatomb.py to DPAPI credentials stealing 2022-09-20 16:56:07 +02:00
Windows - Persistence.md Certifried CVE-2022-26923 2022-05-13 09:44:51 +02:00
Windows - Privilege Escalation.md Fixing TGS/ST 2022-09-06 10:03:49 +02:00
Windows - Using credentials.md Added missing parenthese 2022-05-25 10:04:41 +02:00