Pass the Hash
Overview
With a cracked a password and or dumped SAM hashes, we can use both of them for lateral movement by passing them around machines in the network.
If the password/hash is one of a Local Administrator, we can use secretsdump to dump out more hashes from other computers, crack those passwords and pass them around again.
Netexec is the tool that will be used for this attack and it even stores a database of all the findings of the attack.
Netexec
Pass the Password
Pass the Hash
Pass the Hash Variations
View crackmapexec database
Mitigation
Limit account reuse
Don't reuse Local Administrator passwords
Disable Local Administrator and Guest accounts
Limit who is an Administrator
Strong password policy
Last updated
Was this helpful?