guardicore/monkey
GitHub で見るIn domain networks, query domain to scan machines in domain
Open
#191 opened on 2018年10月7日
Complexity: MediumFeatureHelp wantedImpact: Medium
説明
Expected Behavior
The Monkey should have a feature (with a toggle) to query the domain controller and get a list of domain joined machines to try and attack. Since the Monkey in this case would be running in a domain machine, the credentials stolen by mimikatz will likely be valid for other domain joined machines.
We could get the data using WMI queries we're already running or by running PowerShell commands