Credentials Harvesting
Credential Access
Credential Access Credential access is where adversaries may find credentials in compromised sys...
Local Windows Credentials
In general, Windows operating system provides two types of user accounts: Local and Domain. Local...
Local Security Authority Subsystem Service (LSASS)
What is the LSASS? Local Security Authority Server Service (LSASS) is a Windows process that han...
Windows Credential Manager
This task introduces the Windows Credential Manager and discusses the technique used for dumping ...
Domain Controller
This task discusses the required steps to dump Domain Controller Hashes locally and remotely. NT...
Local Administrator Password Solution (LAPS)
This task discusses how to enumerate and obtain a local administrator password within the Active ...
Other Attacks
In the previous tasks, the assumption is that we already had initial access to a system and were ...
Conclusion
Recap In this room, we discussed the various approaches to obtaining users' credentials, includi...