Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

BED-5036 implement post processing for CoerceAndRelayNTLMToSMB #1015

Draft
wants to merge 3 commits into
base: main
Choose a base branch
from

Conversation

mvlipka
Copy link
Contributor

@mvlipka mvlipka commented Dec 13, 2024

Description

Implement analysis for CoerceAndRelayNtlmToSmb and the initial setup for our NTLM post processing

Motivation and Context

This PR addresses: BED-5036

Why is this change required? What problem does it solve?
This allows us to create edges that allow a computer with unrolled admin access to one or more computers where SMB signing is disabled.

How Has This Been Tested?

Testing will occur as part of a future ticket in which we will write a new integration test harness for NTLM as a whole

Screenshots (optional):

Types of changes

  • New feature (non-breaking change which adds functionality)

Checklist:

@mvlipka mvlipka changed the title BED-5034 implement post processing for CoerceAndRelayNTLMToSMB BED-5036 implement post processing for CoerceAndRelayNTLMToSMB Dec 13, 2024
@mvlipka mvlipka force-pushed the BED-5036/CoerceAndRelayNTLMToSMB-PostProcessing branch from 7d37e57 to 0a6a170 Compare December 13, 2024 15:31
@mvlipka mvlipka force-pushed the BED-5036/CoerceAndRelayNTLMToSMB-PostProcessing branch from 30ceda6 to e33b88d Compare December 13, 2024 17:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant