The gMan nixWiki

Because the mind is made of Teflon...

User Tools

Site Tools


method_5_post-exploitation

Differences

This shows you the differences between two versions of the page.

Link to this comparison view

Both sides previous revisionPrevious revision
method_5_post-exploitation [2023/01/12 00:30] – [Overview] gmanmethod_5_post-exploitation [2023/01/12 00:31] (current) – [First Thing] gman
Line 46: Line 46:
   - ''lsadump'': dumps LSA Secrets   - ''lsadump'': dumps LSA Secrets
   - ''pwdump'': dumps password hashes   - ''pwdump'': dumps password hashes
 +
 +Linux passwords are usually found in ''/etc/shadow''.
 +  * You can simply copy that file to your attack machine and crack offline (if you have root).
 +  * Therefore, priv esc is a key part of acquiring credentials.
  
 ---- ----
method_5_post-exploitation.1673483436.txt.gz · Last modified: by gman