Orc icon indicating copy to clipboard operation
Orc copied to clipboard

LDAP tricks

Open zMarch opened this issue 6 years ago • 1 comments
trafficstars

If we can find a domain-joined Linux, i've seen some tricks that might let us extract hashes and secrets etc. I've not had too much of a deep look, noting it for myself, mostly.

zMarch avatar Mar 20 '19 22:03 zMarch

Of interest here might be some of the work done by Tim from Portcullis, just gonna leave some links below.

https://labs.portcullis.co.uk/presentations/where-2-worlds-collide-bringing-mimikatz-et-al-to-unix/ https://labs.portcullis.co.uk/blog/an-offensive-introduction-to-active-directory-on-unix/ https://github.com/portcullislabs/linikatz

0x27 avatar Mar 21 '19 07:03 0x27