Skip to content
KitploitKITPLOIT
ツールエクスプロイトブログ
Log in
提出
ツールエクスプロイトブログ
提出

ハッキング、侵入テスト、サイバーセキュリティツールをあなたのセキュリティアーセナルに!

Kitploitはハッキング、サイバーセキュリティ、ペネトレーションテストのツールディレクトリです。最新のプロジェクトアップデートを見つけて、脆弱性の発見、システム分析、テストの自動化、セキュリティの強化を行いましょう。

··フィード·お問い合わせ·プライバシー·© 2026 Kitploit

ツールディレクトリ

カテゴリ

すべてのカテゴリを見る
Loading categories
windows-coerced-authentication-methods — A list of methods to coerce a windows machine to authenticate to an attacker-controlled machine through a Remote Procedure Call (RPC) with various protocols. | Kitploit
ツール/GitHubGitHub/p0dalirius/windows-coerced-authentication-methods
Privilege EscalationExploitationPenetration TestingAuthenticationRed TeamingCurated Resources
GitHubp0dalirius/windows-coerced-authentication-methods

windows-coerced-authentication-methods

A list of methods to coerce a windows machine to authenticate to an attacker-controlled machine through a Remote Procedure Call (RPC) with various protocols.

人気

すべて見る →

コミュニティで最も使われているツールを見つけましょう。

すべてのツールを探索

ツールコレクションを閲覧

すべてのツールを見る →
共有
リポジトリを見るウェブサイト
601721314日前Kitploit レビュー済み
要求された言語のコンテンツは利用できません。英語版を表示しています。


This repository contains a list of many methods to coerce a windows machine to authenticate to an attacker-controlled machine.
GitHub repo size YouTube Channel Subscribers

All of these methods are callable by a standard user in the domain to force the machine account of the target Windows machine (usually a domain controller) to authenticate to an arbitrary target. The root cause of this "vulnerability/feature" in each of these methods is that Windows machines automatically authenticate to other machines when trying to access UNC paths (like \\192.168.2.1\SYSVOL\file.txt).

There are currently 30 working functions in 13 protocols.


Protocols & Methods

  • [MS-COMA]: Component Object Model Plus (COM+) Remote Administration Protocol

    • Remote call to ImportFromFile (opnum 3)/README.md)
  • [MS-DFSNM]: Distributed File System (DFS) Namespace Management Protocol

    • Remote call to NetrDfsAdd (opnum 1)/README.md)
    • Remote call to NetrDfsAddStdRoot (opnum 12)/README.md)
    • Remote call to NetrDfsRemoveStdRoot (opnum 13)/README.md)
    • Remote call to NetrDfsAddRootTarget (opnum 23)/README.md)
    • Remote call to NetrDfsRemoveRootTarget (opnum 24)/README.md)
  • [MS-DHCPM]: Microsoft Dynamic Host Configuration Protocol (DHCP) Server Management Protocol

    • Remote call to R_DhcpBackupDatabase (opnum 44)/README.md)
    • Remote call to R_DhcpRestoreDatabase (opnum 45)/README.md)
  • [MS-DNSP]: Domain Name Service (DNS) Server Management Protocol

    • Remote call to R_DnssrvOperation — LogFilePath (opnum 0)/README.md)
  • [MS-EFSR]: Encrypting File System Remote (EFSRPC) Protocol

    • Remote call to EfsRpcOpenFileRaw (opnum 0)/README.md)
    • Remote call to EfsRpcEncryptFileSrv (opnum 4)/README.md)
    • Remote call to EfsRpcDecryptFileSrv (opnum 5)/README.md)
    • Remote call to EfsRpcQueryUsersOnFile (opnum 6)/README.md)
    • Remote call to EfsRpcQueryRecoveryAgents (opnum 7)/README.md)
    • Remote call to EfsRpcFileKeyInfo (opnum 12)/README.md)
    • Remote call to EfsRpcDuplicateEncryptionInfoFile (opnum 13)/README.md)
    • Remote call to EfsRpcAddUsersToFileEx (opnum 15)/README.md)
    • Remote call to EfsRpcFileKeyInfoEx (opnum 16)/README.md)
    • Remote call to EfsRpcEncryptFileExSrv (opnum 21)/README.md)
ツールをダウンロード