In internal penetration tests and red team engagements, an account with write privileges over an SMB share can be your best bet to go further
Security Research and Services
In internal penetration tests and red team engagements, an account with write privileges over an SMB share can be your best bet to go further
Over the years I’ve seen a lot of misconfigurations or a lack of configurations when it comes to protecting Windows credentials, hashes or Kerberos tickets.
There are a good number of situations when we find ourselves abusing the LLMNR and NBT-NS protocols on an infrastructure penetration test, more specifically on