powerview
powershell -ep bypassGet-NetUsernet users /domainGet-NetUser | select cn, memberofGet-NetUser -UserName adminGet-NetGroupGet-DomainUser * | Select-Object samaccountname,description |Where-Object {$_.Description -ne $null}nxc ldap 10.10.11.32 -u '' -p '' --users | grep 'TypeUser'bloodyAD -u ldap -p 'nvEfEK16^1aM4$e7AclUf8x$tRWxPWO1%lmz' -d support.htb --host dc.support.htb --dns 10.10.11.174 get search --attr infoAD PowerView
Last updated