Pentesting Windows AD
Password Spraying
Windows
Password spraying refers to the attack method that takes a large number of usernames and loops them with a single password
Kerberos pre-auth bruteforcing
Using kerbrute
, a tool to perform Kerberos pre-auth bruteforcing.
Kerberos pre-authentication errors are not logged in Active Directory with a normal Logon failure event (4625), but rather with specific logs to Kerberos pre-authentication failure (4771).
- Username bruteforce
- Password bruteforce
- Password spray
Spray a pre-generated passwords list
- Using
crackmapexec
andmp64
to generate passwords and spray them against SMB services on the network. - Using
DomainPasswordSpray
to spray a password against all users of a domain. - Using
SMBAutoBrute
.
Spray passwords against the RDP service
- Using RDPassSpray to target RDP services.
- Using hydra and ncrack to target RDP services.