Password Spraying

Password attack (Password spraying)

Three types of password spraying of AD

# First check lockdown policy.
net accounts

Type 1: Directory Authentication Spraying

We will use the same script that we previously used for searching in the Active Directory.

Script can be seen from here

Type 2: PowerShell Spraying

Using crackmapexec or netexec(Kali linux):

If in the output it is stated that "Pwn3d!" then it means that user has administrative privilege.

Learn more about this tool

Type 3: Kerberos Ticket Spraying

Last updated