GeekCode
797 subscribers
452 photos
3 videos
7 files
942 links
๐ŸCyber Security โค๏ธ
๐ŸHacking Resources ๐Ÿ‘จโ€๐Ÿ’ป

Providing knowledge to people's๐Ÿฅ€
Nobody gets smaller by sharing knowledge
You can also share your knowledge with us...๐Ÿ™‚๐Ÿ™‚

๐Ÿ“ฐPromotion/Query - @geekcodevipbot
Download Telegram
๐Ÿ˜ˆ 50 Methods For Lsass Dump.

Without going too deep into theory, Local Security Authority Subsystem Service (also known as LSASS) is a process (executable file C:\Windows\System32\lsass.exe) responsible for managing various authentication subsystems of the #Windows OS. Among his tasks: checking the โ€œcredsโ€ of local and domain accounts during various scenarios of requesting access to the system, generating security tokens for active user sessions, working with Security Support Providers (SSP), etc.


This article introduces 50 methods for extracting authentication data from LSASS memory:

https://redteamrecipe.com/50-methods-for-lsass-dumprtc0002

#Pentest #AD

@geekcode ๐Ÿ•ต๏ธโ€โ™‚๏ธ