SAM (Security Account Manager) NTDS.dit

agnusdei·2025년 9월 7일
0

CTF

목록 보기
91/154

In Windows, SAM (Security Account Manager) is used to store user account information, including usernames and hashed passwords. You can acquire NTHash/NTLM hashes by dumping the SAM database on a Windows machine, using a tool like Mimikatz, or using the Active Directory database: NTDS.dit. You may not have to crack the hash to continue privilege escalation, as you can often conduct a “pass the hash” attack instead, but sometimes, hash cracking is a viable option if there is a weak password policy.

profile
DevSecOps ⚙️ + CTF🚩

0개의 댓글