🔥
AidenPearce369 HandBook
  • SCANNING
    • Nmap
  • ENUMERATION
    • FTP
    • SMTP
  • AD PENTESTING
    • TOOLS FOR RED TEAMING
    • BYPASS TECHNIQUES
      • EXECUTION POLICY
      • AV EVASION
      • APP LOCKER POLICY
      • CLM BYPASS
      • WINDOWS FIREWALL
      • OBFUSCATION
      • REGISTRY
    • AD ENUMERATION
      • Basic Enumeration
      • Enumerating Users
      • Enumerating User Properties
      • Enumerating Computers
      • Enumerating Domain
      • Enumerating Domain Controllers
      • Enumerating Domain SID
      • Enumerating Domain Policy
      • Enumerating Groups
      • Enumerating Log On & Log Off Activities
      • Enumerating File Shares
      • Enumerating OUs
      • Enumerating GPOs
      • Enumerating ACLs
      • Enumerating Domain Trusts & Forest Trusts
      • User Hunting
    • LATERAL MOVEMENT
      • LOCAL ADMIN ACCESS
      • FILE DOWNLOAD
      • POWERSHELL REMOTING
    • AD BLOODHOUND
    • MIMIKATZ
    • DUMPING SECRETS
      • MIMIKATZ
      • LSASS DUMP
      • VOLUME SHADOW COPY
      • REGISTRY
      • VAULT CREDENTIALS
      • INFORMATIONAL FILES
    • AD PERSISTENCE
      • MODIFYING SECURITY DESCRIPTORS
      • REMOTE REGISTRY BACKDOOR
      • DC-SHADOWING
    • DOMAIN PRIVILEGE ESCALATION
      • KERBEROASTING
      • AS-REP ROASTING
      • TARGETED AS-REP ROASTING
      • UNCONSTRAINED DELEGATION
      • CONSTRAINED DELEGATION
      • TRUST BASED DOMAIN ATTACKS
      • ABUSING MS-SQL TRUST
  • WINDOWS LOCAL PRIVILEGE ESCALATION
    • Find Local Admin Access
    • PowerShell Remoting
    • Service Unqouted Path
    • Modifiable Service
  • REVERSE SHELLS
    • PowerShell
    • Scheduled Tasks
    • Socat
  • TODO
Powered by GitBook
On this page
  1. AD PENTESTING
  2. BYPASS TECHNIQUES

REGISTRY

ALLOW LOGIN FOR DSRM ADMINISTRATOR

To modify the registry value to allow DSRM admin to login

New-ItemProperty "HKLM:\System\CurrentControlSet\Control\Lsa\" -Name "DsrmAdminLogonBehavior" -Value 2 -PropertyType DWORD

PreviousOBFUSCATIONNextAD ENUMERATION

Last updated 3 years ago