Author: xct - Bewertung: 73x - Views:2768
This is part 5 of the Wutai series. We are getting DA by using a helpdesk account to add us to a privileged group. We then enumerate the trust relationship with another domain and run Bloodhound on it. Finally we find a user that uses the same password in both domains and use it to jump onto the second domain.
[ Support & Private Lab Access ]
• https://vulnlab.com
[ Discord ]
• https://discord.gg/vulnlab
[ Timestamps ]
00:00 Intro & AD Overview
01:15 Helpdesk to Password-Audit
05:00 Secretsdump & Beacon on the DC
06:50 Domain Trust & Bloodhound
13:42 Finding a way into the 2nd Domain
[ Notes & Links ]
• https://vulndev.io/
• https://vulnlab.com
[ Desktop ]
• https://github.com/xct/kali-clean
• https://www.yuumeiart.com/
[ About ]
• https://vulndev.io
• https://twitter.com/xct_de
• https://github.com/xct
This is purely educational content - all practical work is done in environments that allow and encourage offensive security training.
SOCIAL SHARE CARD GENERATOR