
C#-Tool zum Abrufen von LAPS-Passwörtern aus Active Directory über LDAP, entwickelt für die speicherinterne Ausführung innerhalb von Cobalt Strike-Sitzungen mittels execute-assembly.
Das Attribut ms-mcs-AdmPwd speichert das Klartext-LAPS-Passwort.
Diese ausführbare Datei ist dafür ausgelegt, innerhalb einer Cobalt-Strike-Sitzung mit execute-assembly ausgeführt zu werden. Sie ruft das LAPS-Passwort aus dem Active Directory ab.
Erfordert (entweder):
ExtendedRight oder Generic All Rights _____ __ __ ___ ____ _____
/ ___// /_ ____ __________ / / / | / __ \/ ___/
\__ \/ __ \/ __ `/ ___/ __ \/ / / /| | / /_/ /\__ \
___/ / / / / /_/ / / / /_/ / /___/ ___ |/ ____/___/ /
/____/_/ /_/\__,_/_/ / .___/_____/_/ |_/_/ /____/
/_/
Required
/host:<1.1.1.1> LDAP host to target, most likely the DC
Optional
/user:<username> Username of the account
/pass:<password> Password of the account
/out:<file> Outputting credentials to file
/ssl Enable SSL (LDAPS://)
Usage: SharpLAPS.exe /user:DOMAIN\User /pass:MyP@ssw0rd123! /host:192.168.1.1
