Password Spray
Password Spray Attack
Tools: CrackMapExec/Netexec , sprayhound
TIP: Get password policy first to prevent account lockouts! Usually, you need creds for this, but before starting the spray you may get the policy)
Commands:
Password Policy
netexec IP -u 'USER' -p 'PASSWORD' --pass-pol
enum4linux -u 'USERNAME' -p 'PASSWORD' -P IP
Get-ADDefaultDomainPasswordPolicy
Get-ADFineGrainedPasswordPolicy -filter * (Fine Grained Password Policy (FGPP)
Get-ADUserResultantPasswordPolicy -Identity USER
ldapsearch-ad.py --server 'DC' -d DOMAIN -u USER -p PASS --type pass-polsPassword Spray
Password Spraying & Password Policies
Command
Description
Last updated