Commit Graph

32 Commits

Author SHA1 Message Date
Benjamin DELPY 9b325b893c [fix #46] MSV structure alignment for Windows 10 > LTSB (LSAISo & normal)
[enhancement] SID/Name lookup & LDAP query now with system arg (not only local/current domain)
2016-06-04 01:35:35 +02:00
Benjamin DELPY 4c6ffa99c5 [fix #39] Removing 2 bytes of alignment when using LSAIso with MSV 2016-05-22 20:07:50 +02:00
Benjamin DELPY 9e298f16e4 Welcom to Windows 10 LTSB & current
[remove] mimidrv & mimikatz kernel module: Process & Object callbacks remover are not anymore in the program
[internal] Windows 10 is now splitted in 1507 (LTSB) and 1511 (current)
[internal] mimidrv: Windows 10 support added
[internal] mimilib WinDBG module & mimikatz::sekurlsa: Windows 10 MSV / Kerberos Tickets are not specific anymore (offsets table)
[internal] Using KULL_M_MEMORY_GLOBAL_OWN_HANDLE instead of local variable in each function
2016-03-27 19:22:36 +02:00
Benjamin DELPY 34d1d0f573 Crypto & Kerberos enhancements
- [fix] dpapi::capi now deals with AT_SIGNATURE keys
- [fix] sekurlsa::kerberos / kerberos:: encryption type are now signed
- [new] kerberos::ask to ask / save TGS from current TGT
- [new] crypto::system to describe/to export Windows System Certificate (cert, crl, ctl, keyid)
- [internal] smaller banner for smaller displays
- [internal] Copyrights for 2016
- [internal] kull_m_file can deal with environment-variable strings in paths
- [internal] kull_m_crypto new types for CERT_PROP_*_ID
2016-01-12 03:13:12 +01:00
Benjamin DELPY fbb32cdcfa MSV & Kerberos fixes, LSA and Privilege enhancements
- [fix] sekurlsa::msv & mimilib for Windows 10 build 10586
- [fix #20] sekurlsa::tickets (display & export) for NT 6 != Windows 10
- [close #16] kerberos::golden now with ~NetBios name in LogonDomainName field of the PAC
- [new] privilege module shortcuts (driver, security, tcb, backup, restore) and functions (by id or name)
- [new] lsadump::dcsync and lsadump::lsa /inject 'NTLM-Strong-NTOWF' in Supplemental Credentials structures (Windows 2016 TP 4)
- [internal] NtSetSystemInformation can now be used in code
2016-01-06 02:46:28 +01:00
Benjamin DELPY 1b130574ed mimikatz & mimilib sekurlsa module ready for Windows 10 build 10586 2015-11-13 00:47:56 +01:00
Benjamin DELPY 5d20400f6c mimikatz + mimilib sekurlsa fix for SmartCard informations 2015-10-05 01:08:45 +02:00
Benjamin DELPY 5f12ced3fb Enhancements
* Code cleaning
2015-09-06 19:34:30 +02:00
Benjamin DELPY c322dc582f Cleaning & few Win10 adaptations 2015-08-30 22:01:05 +02:00
Benjamin DELPY 8b8eaf0201 Global licence update, credits to Vincent LE TOUX for DCSync, and lsadump::hash moved to crypto::hash 2015-08-25 11:19:01 +02:00
Benjamin DELPY bdab94dfff DRSR fixes 2015-08-23 22:50:21 +02:00
Benjamin DELPY e6924b75ed Compatible with Visual Studio 2015 2015-07-24 00:20:34 +02:00
Benjamin DELPY 45cade5b76 DPAPI Backup keys export from memory cache (sekurlsa + WinDBG), WinDBG LSAIso support 2015-05-25 00:24:46 +02:00
Benjamin DELPY d05eb826ac trust cache for WinDbg mimilib, fix for mimikatz 2015-04-19 21:21:05 +02:00
Benjamin DELPY 755bff14d8 Smartcard details for WinDbg + fix for 7x64 2015-04-06 22:41:15 +02:00
Benjamin DELPY 880b47218b krbtgt for WinDbg 2015-04-02 00:48:23 +02:00
Benjamin DELPY ab38babf93 Windows 10 Preview, driver & lsa minor fix + WinDbg 2015-03-12 01:46:03 +01:00
Benjamin DELPY c4f9fc5639 Windows 10 Constant & LSA MSV1_0 module. Added Windows 2012 support for AddSid 2015-01-30 21:43:09 +01:00
Benjamin DELPY 4e798859ba Some fixes for mimidrv & crypto. Preparation for Windows 10. 2014-12-21 15:38:14 +01:00
Benjamin DELPY d5676aa66c minesweeper, Kerberos ccache, Windows 10 update, newsoft contre-rump, ... 2014-11-20 08:57:04 +01:00
Benjamin DELPY 8ca8f056d2 Kernel Memory handle with mimidrv & vault fix 2014-06-07 21:24:10 +02:00
Benjamin DELPY 4ad7bbf38e ARRAYSIZE & indentation 2014-05-28 18:00:36 +02:00
Benjamin DELPY 08896a30f8 sekurlsalib no more needed 2014-05-25 21:39:41 +02:00
Benjamin DELPY 3843e998a8 lsadump::lsa /inject updated to avoid DLL injection, only code. 2014-05-25 21:37:38 +02:00
Benjamin DELPY 54502be4ca lsadump::lsa can play with AD supplementalCredentials, with mimilib.dll 2014-05-24 22:16:46 +02:00
Benjamin DELPY fbebacc9be mimilib (WinDBG ext) structures for KB2871997 2014-05-17 14:10:59 +02:00
Benjamin DELPY ba14c8b425 Pass-The-Hash enhancement for AES keys 2014-05-11 01:43:43 +02:00
Benjamin DELPY 3b0b875fe8 Kerberos key list for mimilib 2014-05-09 01:04:09 +02:00
Benjamin DELPY fd667773cb Pass-The-Hash enhancements, 'powerkatz', Kerberos keys better ouptut 2014-05-05 01:24:54 +02:00
Benjamin DELPY b66f5cb6cf mimikatz & mimilib 'ssp' improvement of listing 2014-04-14 16:29:54 +02:00
Benjamin DELPY be342ebba5 Credential Manager in mimikatz and mimilib! 2014-04-13 22:57:09 +02:00
Benjamin DELPY bb371c2acb Initial upload 2014-04-06 20:31:53 +02:00