26 Aug '12, 2am

easy way to hunt for local admins using nmap scripting engine + simple ruby script

I can’t even count the number of times I have had user credentials or a hash and wondered where I had Local Administrative privileges. Sure I could fire up metasploit’s msfconsole and psexec across the network. Hell I could even create a resource script to automate the entire task for me, but its doesn’t scale very well and often times the default metasploit config is not very stealth when you flag every workstation and server antivirus on the network. That’s when I started to utilize Nmap’s smb-enum-shares NSE script. I’ve been aware of the script for sometime now, but I wasn’t aware that you can feed it arguments such as a username, password, domain and others. Even better, the NSE script doesn’t need cleartext credentials so you can pass-the-hash like we all love to do. The syntax is pretty straightforward as seen below:

Full article: http://www.pentestgeek.com/2012/08/23/creds-or-hash-where...

Tweets

International SEO: Using XML Sitemaps hreflang= for Geotargeting? Beware of the Kinks

International SEO: Using XML Sitemaps hreflang=...

searchenginewatch.com 24 Aug '12, 5am

We recently had a bit of a head-scratcher with a new e-commerce client and problems with geo-targeting the correct site to...

Server Location as Local Ranking Factor: With t...

seochat.com 23 Aug '12, 1pm

Does the location of your web server or web host have an effect on your ranking in Google? That's a potential concern for ...

Top Ruby Article: Using Statsd with Rails:

mikeperham.com 25 Aug '12, 10pm

One of the things I’ve had on my mind at The Clymb is better runtime monitoring for our website and servers. We have NewRe...

Shopping day? Now you can grab Gevalia at your ...

gevalia.com 25 Aug '12, 7pm

Available where you buy groceries: Traditional Roast Smooth and perfectly balanced. This is our most beloved blend. There'...

Using StackTracy within a small #Sinatra applic...

ontwik.com 26 Aug '12, 5am

This is a screencast in which Paul Engel (of Internetbureau Holder B.V. which was co-organizer of the European RubyAndRail...

Some useful tips: Using Sublime Text 2 with Rub...

youtube.com 24 Aug '12, 1am

Close Your browser is not supported by YouTube and it needs to be updated. Learn more . Using Sublime Text 2 with Ruby on ...