I tested Raspberry Pi and mini-computer placement scenarios for controlled C2 access. Across engagements, network access sometimes supported collection of authentication challenge-response material with Responder. We cracked captured authentication material or relayed authentication to achieve an authenticated internal identity. These were engagement-specific outcomes.
Viewed
Growing MSSP with Offensive Services
Controlled network access and authentication
Guest data exposure and authenticated internal access
Return to the full story ←