Exchange / OWA
Version, NTLM auth realm
Small helper to check Exchange Version, Release date and NTLM auth realm
Internal Pentest - NTLM Reco
Proxy Logon
ProxyShell - CVE-2021-34473
Check if exchange is vulnerable:
CVE-2023-36745 - RCE
ProxyNotShell
Exploiting Exchange Powershell after ProxyNotShell
User enumeration
Metasploit owa_login
MailSniper
Msmailprobe
Password Spray
Bruteforce
CloudMicrosoft Exchange ActiveSync (EAS)
/Microsoft-Server-ActiveSync/is reachable
Resources
Interesting Books
Interesting BooksThe Web Application Hacker’s Handbook The go-to manual for web app pentesters. Covers XSS, SQLi, logic flaws, and more
Bug Bounty Bootcamp: The Guide to Finding and Reporting Web Vulnerabilities Learn how to perform reconnaissance on a target, how to identify vulnerabilities, and how to exploit them
Real-World Bug Hunting: A Field Guide to Web Hacking Learn about the most common types of bugs like cross-site scripting, insecure direct object references, and server-side request forgery.
Last updated