Spray icon indicating copy to clipboard operation
Spray copied to clipboard

Results not detecting valid login and reporting it as logon failure

Open hackerlawyer opened this issue 1 year ago • 1 comments

SMB spraying performed with valid usernames and known valid password returned logon failure despite being accurate and reconfirmed with crackmapexec as valid login. Trying to work this tool into my pen test arsenal to automate password spraying but looking like manually spraying with cme is best as this tool is returning false negatives. Please advise as to potential problems/solutions and whether you have seen this behavior before. Thank you. Maybe it only returns as logon successful if ADMIN$ share is accessible? Its honestly a real bummer as this tool gave me hope for not having to password spray manually anymore. Could have been a great improvement in testing quality for my clients as well.

hackerlawyer avatar Nov 03 '24 16:11 hackerlawyer

Found the solution to my problem - insert a whitespace after each username in your lists!

hackerlawyer avatar Nov 03 '24 17:11 hackerlawyer