Hacking Active Directory for Beginners (over 5 hours of content!)

Поделиться
HTML-код
  • Опубликовано: 5 фев 2025

Комментарии • 158

  • @ultravioletiris6241
    @ultravioletiris6241 Год назад +57

    Heath, thank you for sticking through the tough times to continue leading this industry by example. You know this but you make a huge impact on thousands of lives. You have a wonderful team too.

  • @avichiii
    @avichiii Год назад +12

    finally finished the course, learned a lot.

  • @muse0x19E
    @muse0x19E 17 дней назад

    Omg, Kamran Bilgrami was my professor last semester in college, he said he has a Medium page and does technical write-ups but I never got the chance to check it out. Big shout out to my professor and to you too.

  • @Ransomewerewolf
    @Ransomewerewolf Год назад +28

    For anyone stuck at 1:23:50, Windows Defender Antivirus has been renamed Microsoft Defender Antivirus in Server 2022.

    • @wrkt98
      @wrkt98 Год назад

      nice one

    • @martinmudaliar7542
      @martinmudaliar7542 Год назад +1

      lol i was confused for a second, then i realised i'm still using server 2019

    • @alihamid4909
      @alihamid4909 5 месяцев назад

      Thanks alot, it save my time

    • @akashmadanu3994
      @akashmadanu3994 Месяц назад

      THAKS FOR INFO

  • @Tropicalplayer
    @Tropicalplayer Год назад +1

    These are the best vids with the best voice that doesn't put u to sleep the cmd hashcat blew my mind didn't no cmd was so handy still thank you for the vid

  • @jaytboricua12
    @jaytboricua12 Год назад +9

    Thanks for everything you do for the community. Can't wait to finish the PEH course, been sidetracked by other commitments, but this helps motivate me to get back into it.

  • @TheElevenBravo
    @TheElevenBravo Год назад +4

    Hey!
    New fan here....
    Just wanted to drop a line expressing my gratitude for your hard work in keeping us all on top of our games.
    Thank you!
    Thank you......
    May The Lord keep blessing you and your family! 🙏

  • @J_a_k_e_
    @J_a_k_e_ Год назад +4

    Thank you sifu 🙏 This is exactly what I'm getting into at the moment. Synchronicity or what 🤯

  • @riversmith3123
    @riversmith3123 9 месяцев назад +1

    I’m joining the courses then moving to get started with certs thank you for all the work you put into this

  • @Ragab0t
    @Ragab0t Год назад +7

    On a serious note, thanks for sharing and thanks for everything you do for the community 🎉🎉

  • @4b5urd.
    @4b5urd. Год назад +3

    TCM you're the best! You forever have my respect. And thank you for your service, Heath!

  • @TheBashir007
    @TheBashir007 Год назад

    As always the greatest content ever
    My advise to students
    Love and cherish every second of this lecture it some ones life's work

  • @kokn3t
    @kokn3t 11 месяцев назад

    Thank you for the awesome pentest series.

  • @Linux333
    @Linux333 Год назад

    15 mins in and already amazing

  • @martinmudaliar7542
    @martinmudaliar7542 Год назад

    A little tip for setting up windows 10 machines (for workstation only): Once you are done with the first one, right click on the windows 10 tab then: VM -> Manage -> Clone. Make sure that you do this before setting up users, and domain settings. Happy hacking! o7

  • @jeebugorn
    @jeebugorn Год назад +1

    shared with my co-workers (work for a managed security company). one of my co-workers with working towards PJPT, so this will be helpful

  • @Drew-xu6nw
    @Drew-xu6nw 13 дней назад

    Great video!

  • @something18999
    @something18999 Год назад +2

    Amazing course for sure!!

  • @chrisr.8610
    @chrisr.8610 4 месяца назад

    Amazing video, I learned a lot. Thanks!

  • @joel9909
    @joel9909 2 месяца назад

    Thank you TCM

  • @adamcope6890
    @adamcope6890 Год назад +1

    Thanks for making this course available! I’ll definitely check out your courses in the website.

  • @حسينالعربي-د8ص
    @حسينالعربي-د8ص 11 месяцев назад

    Thank you ❤❤❤❤

  • @ShellCode-oo2cu
    @ShellCode-oo2cu Год назад

    Thank you for this great video.

  • @haryodes5675
    @haryodes5675 Год назад

    Thank u for share this, i have no money sign up at tcm, so i enjoy watch on youtube

  • @user-4theloveoftech
    @user-4theloveoftech Год назад

    Thank You! This helps a lot with getting data! 😊

  • @youcef2851
    @youcef2851 Год назад +1

    thanks tcm for this valuable free content

  • @Jupiterxice
    @Jupiterxice Год назад

    TCM you are awesome a gift to rising pentesters............. GODSPEED..

  • @MosquitoHunt3r
    @MosquitoHunt3r Год назад +1

    Working out Heath? Looking fitter! Hahaha Thanks for the great content as always!

  • @rochdiferjani6778
    @rochdiferjani6778 11 месяцев назад

    I love it 🥰

  • @FlewTheCoop
    @FlewTheCoop Год назад +4

    Great stuff. I am learning a lot. 2:16:47 SMB Relay. Do you have to trick the one machine user to go to a share on your machine? Is this just using a broadcast capture similar to LLMNR you showed earlier?

    • @davidburn69
      @davidburn69 Год назад

      Same question here, did you get it solved?

    • @aloisdasilva441
      @aloisdasilva441 Год назад +1

      I did not manage to reproduce what he did, is it the same for you ?

    • @the_sandman00
      @the_sandman00 Год назад

      You don’t have to trick the user. In the video he pointed to his own machine IP but in general if a user mistypes while connecting to a different share, it’ll capture and point it to attackers machine

    • @kaiadkins
      @kaiadkins 11 месяцев назад +2

      @@the_sandman00there’s got to be some other methods I feel like the chances of a user pointing to an incorrect UNC path is slim to none

    • @the_sandman00
      @the_sandman00 11 месяцев назад +1

      @@kaiadkins Might be. But trust me it’s way more common. What we basically do is. We run a tmux session and there we start responder and leave it. Sometimes it takes a lot of time. But sometimes it doesn’t take more than a day

  • @debrikchakraborty2845
    @debrikchakraborty2845 7 месяцев назад +2

    2:13:16 Do I have to disable the firewall in my "Punisher" windows so I can get the nmap results (It is showing filtered ports) ?

  • @rafaelcabral2037
    @rafaelcabral2037 3 месяца назад

    Last video before bed 😊

  • @anon3027
    @anon3027 3 месяца назад

    Wow amazing thank you

  • @kams196
    @kams196 3 месяца назад +2

    The only bad thing about PNPT and the others certs here is the financial side. The price is super affordable but still got no payment plan or financial arrangement whatsoever. Not everyone has the money ready to go. But a short monthly plan. 3 to 6 months would bring me in

  • @mohammadtorikulislam3981
    @mohammadtorikulislam3981 Год назад +1

    I am just waiting for this tutorials Thanks a lot...

  • @Psyb3rN4ut
    @Psyb3rN4ut Год назад +1

    Thanx so much for publishing this material. I would love to connect.

  • @SIDDHARTH972
    @SIDDHARTH972 Месяц назад

    I am not able to get hashes captured by responder. It only shows that poisoned answer sent to the ip address.

  • @onurceydakaran
    @onurceydakaran Год назад

    Thank you for your kind share

  • @eye21021
    @eye21021 5 месяцев назад

    2:42:39 would it be the same if we use ip address for a normal user, or should we use the domain controller ip?

  • @SayantanHack
    @SayantanHack 9 месяцев назад

    Thanks amazing course

  • @bullettraderscircle
    @bullettraderscircle 8 месяцев назад +2

    You have so much important content, it is discouraging for an absolute beginner because they do not know where to start and how to measure their progress and most important how they can match their current progress with real life demands in the security industry. I am sure it will take a full video just to help put followers on a study/progress path, overall your videos are ablolute bangers 100% tumbs up

  • @eliote_nature
    @eliote_nature 7 месяцев назад

    Hey one tip from me is . i am currently running on 8 gb of total system ram with i3 5005 cpu. its really old but the way i set up is i installed backbox and as it is ubuntu with hacking tools i just do a distro upgrade and then now i have given 1.5gib to 2 windows respectivels and 2 gib to windows server having a ubuntu with hacking tools . NOT ALL TOOLS BUT it will be fine for low end users>>. one more thing is download a 32 bit of windows 10 as they are low>

  • @NagendraMurari
    @NagendraMurari Год назад

    Thank you so much TCM Sec.

  • @FulcanelliRosetta
    @FulcanelliRosetta Год назад

    Good review for the PJPT!

  • @christophercahall3092
    @christophercahall3092 Год назад

    just made a active directory lab in virtualbox too

  • @brunosm0
    @brunosm0 Год назад

    Muchas gracias!

  • @БэтманАполло-р1б
    @БэтманАполло-р1б Год назад +1

    Большое спасибо !

  • @Rabah_RAHLI
    @Rabah_RAHLI 5 месяцев назад

    thank you

  • @darrylwest3106
    @darrylwest3106 Год назад

    This came in at the right time

  • @CD-ir1mt
    @CD-ir1mt Год назад +1

    My ntlmrelayx doesn't work. Do u know if the problem is about my version of python (3.11) ?

  • @zheyingchin4194
    @zheyingchin4194 Месяц назад

    Are there any CPU requirements for this many VMs?

  • @ourdazakaria4182
    @ourdazakaria4182 Год назад +1

    Unbelieveable ❤️

  • @arshdeeprobin1525
    @arshdeeprobin1525 11 месяцев назад

    Thanks Dear

  • @MIKEalaBlackBerry
    @MIKEalaBlackBerry Год назад +1

    I just tried to run responder with the flag “-rdwv” but it gives the error “no such option: -r”
    I checked the help page and apparently the -r option doesn’t exist anymore?

    • @avichiii
      @avichiii Год назад +1

      yes -r is not used in the updated versions, you need to exclude r, just go with -dwv

  • @williamstan1780
    @williamstan1780 Год назад

    I am having difficulties in getting the Firefox esr to run on my kali 32bit on virtual box . Wonder if you happen to encounter the same from other people

  • @Zachsnotboard
    @Zachsnotboard 11 месяцев назад

    Does the new course cover azure ?

  • @EliteBuildingCompany
    @EliteBuildingCompany Год назад +2

    Thanks you sir, much appreciated.

  • @ienabellamy
    @ienabellamy Год назад

    Awesome course. Thanks!!

  • @ogclassicjones332
    @ogclassicjones332 Год назад

    getting error when downloading PMK darklab is allegedly infected.. researched and they are supposed to be updating to remove it

  • @ajayghale2623
    @ajayghale2623 Год назад

    i cant see the computers in my network tab why is that even after enabling network sharing

  • @dispozablehero9829
    @dispozablehero9829 4 месяца назад

    Does anyone know if this video helps getting passed the wall you hit in the pjpt?

  • @sreenathshenoy9387
    @sreenathshenoy9387 9 месяцев назад

    Can i Follow trough the course if I go with windows 11 Enterprise

  • @ClintonKimani-l9z
    @ClintonKimani-l9z 9 месяцев назад

    New virtual machine and open new window in file menu is disabled in vmware workstation 17, any suggestions,?

  • @josephalan31
    @josephalan31 Год назад

    At 02:44:00 when I run ntlmrelayx I get the error saying Errorno 104 connection reset by peer can someone help me resolve it pls

    • @UserMS101
      @UserMS101 9 месяцев назад

      were you able to sort the issue? I have a similar problem

    • @josephalan31
      @josephalan31 9 месяцев назад

      @@UserMS101 yes I was able to sort it

    • @othmankarouch7560
      @othmankarouch7560 6 месяцев назад

      @@josephalan31how?

  • @BrianCastillo-n4p
    @BrianCastillo-n4p Месяц назад

    Got stuck installing Kali linux . I am on macbook air m1 chip . i downloaded the virtual box software . and i dont know what exactly we are to do with 7z

  • @ignite137
    @ignite137 Год назад

    Windows server&Enterprise on ARM?

  • @williamstan1780
    @williamstan1780 Год назад

    Hi it seems that I have some difficulties in running Virtual Box on MacBook for 64 bits just wonder if anyone has encountered the same situation

  • @IntelliVisionTheAI
    @IntelliVisionTheAI 8 месяцев назад

    hey i cant download workstation. it shows me error over and over again.

  • @Saw-o3h
    @Saw-o3h Год назад

    1:49:04 why the hashes are different?

    • @somebody3014
      @somebody3014 11 месяцев назад

      wondering about the same thing, did you find out why?

    • @Saw-o3h
      @Saw-o3h 11 месяцев назад

      @@somebody3014not yet actually

  • @softwaresinner
    @softwaresinner Год назад

    For some reason I get an error when trying to join the workstations to the domain "That domain could not be found" I followed the video exactly. I also ensured on the server that DNS was running and could be reached. Any thoughts?

    • @Eric-ey7rm
      @Eric-ey7rm Год назад +1

      having the same issue here. I also noticed that my ipv4 address is the same for all 3 of my machines....

    • @leihsee
      @leihsee 11 месяцев назад

      @@Eric-ey7rm if you use virtualbox change the NAT to the NATnetwork,your ip's will be different(I wrote it because,if anybody will face this problem)

    • @whyYUbee
      @whyYUbee 9 месяцев назад

      I had the same issue, turns out for all machines Windows Defender has to be manually disabled and IPv6 turned off in Network properties. I found YT video that actually helped me after 8 hours of trying to solve this -> Made by Kindson The Tech Pro "How to Setup Active Directory Domain With VirtualBox and Join Computers - 2020". I hope that helps!

  • @itech7354
    @itech7354 Год назад

    Thanks for this great course please make one advance active DIRECTORY hacking ❤❤❤❤

  • @chaturvedi.jayant_12
    @chaturvedi.jayant_12 10 месяцев назад

    Hi. I couldn't join the Domain of one vm to the local administrator. Can anyone help or guide me?

    • @whyYUbee
      @whyYUbee 9 месяцев назад

      I have the same issue, trying to research that. If I find anything I will let you know.

  • @DaRedT
    @DaRedT Год назад +1

    thank you 👍👋👋

  • @Harishkumar-lt6pu
    @Harishkumar-lt6pu Год назад +5

    Hi TCM , currently I'm doing PEH , but I have one doubt from where I need to start to get into cloud security. Like product based or multi cloud . Can u give me a suggestion

  • @aga1nstall0dds
    @aga1nstall0dds Год назад

    Heath Adams aka the beyonder

  • @hannah-bw1rx
    @hannah-bw1rx 10 месяцев назад

    does anyone have problem like mine, error while powering on: this host does not support intel vt-x. what should i do?

    • @Adivasi7777
      @Adivasi7777 9 месяцев назад

      I guess turn on hypervisor...did you try BIOS..

  • @daljeetbhati8353
    @daljeetbhati8353 Год назад +1

    Big fan

  • @donats2010
    @donats2010 Год назад

    Great video! From a Pentester perspective, what are the requirements to ask to a client in order to do an effective Active Directory pentest? Thank you

  • @Takeonm
    @Takeonm Год назад

    Awesome! Thank youuuuu

  • @manobrodeful
    @manobrodeful 8 месяцев назад

    Could I detonate ransomware on this lab?

  • @CatesAstadan
    @CatesAstadan Год назад +1

    Hello Heath, Thank you for this video. Question, what is the difference between joining in your Attack AD Defend from PEH training? I can see almost the same topics?

    • @TCMSecurityAcademy
      @TCMSecurityAcademy  Год назад +3

      A good chunk of the material can be found in the AD sections of the Practical Ethical Hacking course, which is part of our Academy.
      There are a few topics we'll be covering that aren't covered there, but the big benefit of the live class would be for those that prefer to learn in a classroom setting, would prefer not setting up their own labs, prefer direct instructor interaction, etc. So it just depends on your learning style.

    • @CatesAstadan
      @CatesAstadan Год назад +1

      @@TCMSecurityAcademy Thank you Heath, I love what you do for the community and helping me in my career. Almost taking all your training in TCM academy. Hoping for more training in the future. More power to you and your team!

    • @marcelinemulaji2463
      @marcelinemulaji2463 Год назад

      ​@@TCMSecurityAcademysir I would like to know how to have access to your academy for paid course if there are any

  • @David-e3p7d
    @David-e3p7d 5 дней назад

    Pls, I love your course on RUclips but I cant subscribe for the paid material. I'm in Nigeria

  • @jojootw-j9o
    @jojootw-j9o Год назад

    windows hacking world is big, like the cloud stuff

  • @JerrySpallone
    @JerrySpallone Месяц назад

    For beginners… das me!

  • @sulavadhikari5843
    @sulavadhikari5843 5 месяцев назад

    1:25:00

  • @eno88
    @eno88 Год назад +2

    welp, I had nothing better to do this weekend

  • @Trevor_90
    @Trevor_90 Год назад

    What brand of glasses do you wear?

  • @TheMan-r6p
    @TheMan-r6p Год назад +1

    hey i have a question. what if your vm machine runs slow? is there an alterntive? also kali linux is false postive for me

  • @mohammedadil672
    @mohammedadil672 Год назад

    Hi Heath, Thanks for This video, i have a installed windows 10 and made it as Marvel/thePunisher and also have windows 7 installed in my vmware wondering if i can make my windows 7 machine to join as a Spiderman 2nd machine or do i have to make a windows 10 clone in order for everything to be working smoothly.

  • @bigaripolaylar8993
    @bigaripolaylar8993 10 месяцев назад

    4:07:35

  • @KRU.Infosec
    @KRU.Infosec Год назад

    Is there any student discount on All access membership?

  • @_frhaktal_4099
    @_frhaktal_4099 Год назад

    thank you is verry cool

  • @ghostexist988
    @ghostexist988 Год назад

    Hi there, i am curiouse how you are running the Oracle VirtualBox on M1 MacBook, is it already available in a live stable version. Last time i tryed to manage VMs with VBox it was in beta version and not really usable.

  • @ChrisHaastrup
    @ChrisHaastrup Год назад

    yes sir

  • @johnbeal6592
    @johnbeal6592 Год назад

    hi, my ipv6 attack is not working it says connection reset by peer. and is the authentication of the punisher was done because we provided the credentials or it captured the credentials and did the authentication in the ipv6 attack.?

    • @avichiii
      @avichiii Год назад

      is your problem solved, if not i can help!

    • @johnbeal6592
      @johnbeal6592 Год назад

      @@avichiii I think the problem was due to the sudden closing of vm . I have 16 gb of ram and i was running 4 vm kali 4gb, windows server 2gb and 2 windows 10 with 2gb each and windows as the base operating system. I think due to lack of ram not all 4 stays one suddenly shuts down after some time. SO, that was interrupting I think.
      But if you have something I'd be happy to listen, problems arise everytime so, your solution may be helpful next time. Thank You.

    • @johnbeal6592
      @johnbeal6592 Год назад

      @@avichiii I think I need your help. Can you help me out? Its really not working the ipv6 attack.

    • @avichiii
      @avichiii Год назад

      @@johnbeal6592 ya sure, tell me!

    • @rivestream2530
      @rivestream2530 Год назад

      Did you manage to solve this ? I'm encountering the same problem.

  • @kamilpolak9739
    @kamilpolak9739 Год назад

    I see that the current version of VirtualBox does not support Mac OS. Any alternatives?

    • @cheeto3604
      @cheeto3604 Год назад

      vmware workstation player

  • @rodrigo1300
    @rodrigo1300 Год назад

    Someone here tried the MITM6 attack using Windows Server 2022 and workstation Windows 11?

    • @ienabellamy
      @ienabellamy Год назад +1

      yes, it works. I tried win server 2019 and 2022 with windows 11 arm machines, worked flawlessy.

    • @rodrigo1300
      @rodrigo1300 Год назад

      @@ienabellamy Thank you for your answer. Then I have to check what I'm doing wrong. Somehow my mitm6 script doesn't spoof any request. So literally nothing happens.

  • @x0rZ15t
    @x0rZ15t Год назад

    Woow dude!

  • @Ragab0t
    @Ragab0t Год назад +2

    First? 😅

  • @upup5133
    @upup5133 Год назад +2

    When will You make malware development course so we can be as real as possible when it comes to testing real enviroment? Meterpreter is triggering AV and in real scenario You wouldn't get shell with simple meterpreter payload if AV was running. We (at least I 🙂) want to learn the part where we are crypting our payload but we can't do that without specific pre-knowledge, and we don't know how to get there. I hope You will at least read my comment.