Skip to content

zyn3rgy/RelayInformer

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

12 Commits
 
 
 
 
 
 
 
 

Repository files navigation

RelayInformer Logo

Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective

Sponsored by SpecterOps

Introduction

These tools were written to compliment research summarized in a blog post / presentation by @Tw1sm and myself.

NTLM relay is still a widely abused attack vector during pentests and red teams alike. Depending on your network access perspective, setting up for a relay can be an involved and error-prone process (e.g. over C2). The goal of this toolset is to better inform your NTLM relays, especially in cases where Extended Protection for Authentication (EPA) could be enforced as a mitigation.

Usage

See the RelayInformer [Python] and RelayInformer [BOFs] documentation for details and example usage.

Acknowledgements

About

Python and BOF utilites to the determine EPA enforcement levels of popular NTLM relay targets from the offensive perspective

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages