Posts

Showing posts with the label Windows Penetration Testing Tool: RedSnarf

Windows Penetration Testing Tool: RedSnarf

Image
Windows Penetration Testing Tool       RedSnarf is a pen-testing / red-teaming tool by Ed William and Richard Davy for retrieving hashes and credentials from Windows workstations, servers and domain controllers using OpSec Safe Techniques. RedSnarf aims to do the following: Leave no evidence on the host of intrusion/exfiltration – this includes files, processes and services; Not cause undue damage to the host i.e. forcing the host to re-boot Why use RedSnarf? Currently there are a number of excellent “post-exploitation” tools; these include the smbexec and Metasploit post-exploitation modules to name but a few. RedSnarf differs in that: It’s easy to use It’s lightweight at less than 500 lines of code It does as little on the server as possible It’s modular It’s threaded      RedSnarf is a pen-testing / red-teaming tool by Ed William and Richard Davy for retrieving hashes and credentials from Windows workstations, servers and domain controllers using OpSec S...