Duarte Silva · @serializingme
64 followers · 160 posts · Server infosec.exchange

Did a long time coming update to my PowaScripts! Repository at github.com/serializingme/powas.

Want to highlight two new scripts, one to dump BeyondTrust PowerBroker policy (rules in the policy maybe vulnerable to privilege escalation), and another to dump users' photos stored in Active Directory (useful for social engineering).

Updated the script to dump computers from Active Directory to also dump the sessions and shares of the computers (this will actively connect to the various computers and may turn out very valuable information, like the service desk hidden file share that nobody noticed was open to all the users in the domain.)

Also updated a bunch of scripts with fixes and minor improvements.

#activedirectory #powershell #penetrationtest #powerbroker #applocker

Last updated 2 years ago