Daniel Min (@bigb0ss)

1 exploit Active since Oct 2020
CVE-2020-15931 NOMISEC HIGH WORKING POC
Netwrix Account Lockout Examiner < 5.1 - Exposure of Sensitive Information via Kerberos Pre-Authentication Event
Netwrix Account Lockout Examiner before 5.1 allows remote attackers to capture the Net-NTLMv1/v2 authentication challenge hash of the Domain Administrator (that is configured within the product in its installation state) by generating a single Kerberos Pre-Authentication Failed (ID 4771) event on a Domain Controller.
27 stars
CVSS 7.5