Attacking Active Directory
Ctrlk
  • Reconnaissance
  • Exploiting With Poison and Relay
  • User Enumeration Exploit
  • Exploiting with Users
  • WSUS Exploit
  • Active Directory Certificate Services (ADCS)
  • Metasploit
  • Privilege Escalation
  • User ACL Exploits
  • MSSQL servers Exploitation
    • Enumerate the MSSQL servers
    • Enumerate MSSQL servers with GetUserSPNs & NMAP
    • Enumerate MSSQL servers with CrackMap & Impacket
    • impersonate - execute as login
    • MSSQL Coerce and relay
    • MSSQL trusted links
    • MSSQL Command execution to shell - Yonkers
    • MSSQL Command execution to shell - Salisbury
  • Delegations
  • Trust
  • Exploiting IIS & Privilege escalation
  • Impacket
Powered by GitBook
On this page

MSSQL servers Exploitation

Enumerate the MSSQL serversEnumerate MSSQL servers with GetUserSPNs & NMAPEnumerate MSSQL servers with CrackMap & Impacketimpersonate - execute as loginMSSQL Coerce and relayMSSQL trusted linksMSSQL Command execution to shell - YonkersMSSQL Command execution to shell - Salisbury
PreviousRead Laps passwordNextEnumerate the MSSQL servers

Last updated 2 years ago