Network Attacks
Network Recon
Host Discoverybash find_cidrs.sh eth0Dismap
NetScan - From Windows Host
Sniffing
Miscellaneous TechniquesInteracting with UsersExtract NTLMv1, etc
Extract NTLMv2
NFS Data Extraction
Finding vulnerabilities - Above

Convert pcapng to pcap
Open outbound ports / Filtering
Web content filtering

Living Off Trusted Sites
Port Filtering


Protocol Filtering
ARP - DNS Spoofing
Bettercap
Arpspoof
Eavesarp
LLMNR NBT-NS Poisoning
LLMNR NBT-NS PoisoningADIDNS Spoofing
ADIDNS SpoofingMITM6
MITM MySQL

MITM - ASReproast
MisconfigurationMITM - Kerberoast
KerberoastNo LDAP Signing - KrbRelayUp
KrbRelay
NTLM Relay
SMB (445, 139) / RPCAD CSKerberos Relay
Over HTTP
Over SMB
SMB (445, 139) / RPCAD CSVia DHCPv6-DNS-Takeover

Last updated


