SMB Coercing (445)
Last updated
Was this helpful?
Last updated
Was this helpful?
SMB Coercing is a method to force the domain controller to authenticate against our host. Within this attack we can capture the NetNLM hash. Currently there are multiple possible ways to coerce smb. A well-known method is to use the Encrypting File System Remote Protocol (MS-EFSR) and the PetitPotam script. Other ways using impackets ntlmrelay.py script. These will be added to this wiki in later versions.
Preparation:
Check if Responder is running
Coercing execution:
PetitPotam.py
NetExec