GPP (Group Policy Preference) credential discovery


Attacks
1. Use impacket module to get the password.
2. After accessing to the target machine, and find a xml file
3. CTF: You may find SYSVOL files via any open ports
Decrypt the cpassword

Last updated