SMB Relay
What is SMB?
.--------
|
|
.---
.--NBSSN-->| 139
| '---
.-----. | | Windows
| SMB |>--| |
'-----' | | machine
| | .---
| '---TCP--->| 445
| '---
| |
| |
| '--------
.------------.
| |
.------. .----------.
| NTLM | | Kerberos |
'------' '----------'What is SMB Relay?
What is SMB Signing?
Exploitation
Step 1: Configuration
Step 2: Run Responder
Step 3: Discover hosts with SMB signing disabled
Step 4: Use impacket-ntlmrelayx to get a SMB shell
Step 5: Wait for an event
Defense
Last updated