BLOODHOUND Domain Enumeration (Active Directory #06)

Поделиться
HTML-код
  • Опубликовано: 8 сен 2024
  • Snag the OPERATION PYTHON 2022 Humble Bundle! www.humblebund...
    Help the channel grow with a Like, Comment, & Subscribe!
    ❤️ Support ➡ j-h.io/patreon ↔ j-h.io/paypal ↔ j-h.io/buymeac...
    Check out the affiliates below for more free or discounted learning!
    🖥️ Zero-Point Security ➡ Certified Red Team Operator j-h.io/crto
    💻Zero-Point Security ➡ C2 Development with C# j-h.io/c2dev
    🐜Zero2Automated ➡ Ultimate Malware Reverse Engineering j-h.io/zero2auto
    🐜Zero2Automated ➡ MISP & Malware Sandbox j-h.io/zero2au...
    ⛳Point3 ESCALATE ➡ Top-Notch Capture the Flag Training j-h.io/escalate
    👨🏻‍💻7aSecurity ➡ Hacking Courses & Pentesting j-h.io/7asecurity
    📗Humble Bundle ➡ j-h.io/humbleb...
    🐶Snyk ➡ j-h.io/snyk
    🤹‍♀️SkillShare ➡ j-h.io/skillshare
    🌎Follow me! ➡ j-h.io/discord ↔ j-h.io/twitter ↔ j-h.io/linkedin ↔ j-h.io/instagram ↔ j-h.io/tiktok
    📧Contact me! (I may be very slow to respond or completely unable to)
    🤝Sponsorship Inquiries ➡ j-h.io/sponsor...
    🚩 CTF Hosting Requests ➡ j-h.io/ctf
    🎤 Speaking Requests ➡ j-h.io/speaking
    💥 Malware Submission ➡ j-h.io/malware
    ❓ Everything Else ➡ j-h.io/etc

Комментарии • 65

  • @GC-rg6in
    @GC-rg6in 2 года назад +5

    You don't need to change /etc/resolve. You can just pass the option -ns

  • @mossdem
    @mossdem 2 года назад +52

    The errors you make show us that we are all human, even you John. Thanks for the great content as always!

    • @Lacsap3366
      @Lacsap3366 2 года назад

      the thing is, I really appreciate that John is not cutting out the tinkering and error solving parts of this video series, because in that way we can learn from his errors and gain more insight on how he solves them.

  • @stefanfredin7120
    @stefanfredin7120 2 года назад +2

    I love watching your videos. I used to be in to network security and such, got a job in a completely different direction and never touched it again after school. Now I have trouble even installing software on linux.. It's really relaxing watching people with knowledge doing what you do.

  • @kilarosul
    @kilarosul 2 года назад +3

    I've been watching videos from your channel like crazy... The fun part is that they are very educational... I've started with THM cuz of you and I've done the begginer path in just under a week. You've managed to inspire me to learn something new and right now I'm just having loads of fun with it. Thank you

  • @SP800.69
    @SP800.69 Год назад +1

    This is awesome. Thanks John.
    The install instructions are a bit messed up now (July 2023).
    Following the install instructions on the site leads to a broken install. At least for me
    My install needed :
    The latest Bloodhound GUI binaries need neo4j 5+
    And neo4j 5 needs Java 17 whereas the instructions install 4.2 with Java 11.

  • @fastforward3695
    @fastforward3695 2 года назад +6

    I feel like this will be a must have during the PNPT.

  • @TheCede555
    @TheCede555 5 месяцев назад +1

    I died seeing the bloodhound doggo pictures, i think we've all had that moment :'D great videos!

  • @cyberbrain232001
    @cyberbrain232001 2 года назад +1

    Excellent content and amazing knowledge. I will say your enthusiasm has truly reignited my love of IT. I want to learn and explore and expand my knowledge because of your videos.

  • @theMadhatter817
    @theMadhatter817 Год назад

    the mistakes are awesome, it helps us learn and shows everyone that its not perfect every time. troubleshooting is something that isnt shown in these types of videos. Thanks!

  • @jacobhulbert2976
    @jacobhulbert2976 Год назад

    Thanks for all you do John. I have learned so much from you. I just wanted to share with you; when running a command that should use sudo you can just type "sudo !!" and i will append sudo to the last command. It helped my efficiency so I wanted to pass it on. Again blessings :)

  • @Stellar_AI_History
    @Stellar_AI_History 2 года назад +1

    Good video man. I hate it when people have a host already "compromised" and run sharphound (even though they probably never compromised it and just ran a vw with sharhound on it). I like how you changed it up and are being real! This will help me!

  • @alaahaider
    @alaahaider 2 года назад +3

    John.. you are absolutely awesome. Great tool, great video and most of all great presentation. Very well done 👍

  • @piotrstasinskij2929
    @piotrstasinskij2929 Год назад

    Thank You John for video. Bloodhound is amazing tool for discovering ms ad

  • @jimpowers4463
    @jimpowers4463 2 года назад +2

    Really enjoying this series, can't wait to see what's next.

  • @jeanaimarre8605
    @jeanaimarre8605 2 года назад

    Useful and fun presentation. Please do more. I like the format, the way you explain. Regards

  • @dunkov1
    @dunkov1 2 года назад +1

    John, you are amazing! Keep doing this stuff and maybe you know it but you can execute the previous commands with sudo permissions by just typing "sudo !!" 😅 Greetings and respect from Bulgaria!

  • @naomibenz5664
    @naomibenz5664 2 года назад

    Awesome, Bloodhound name looks like those really scary thing like in horror movies really amazed by the creators, they are frictional stuffs, but I really love John your tutorials on point👌

  • @lumin0l161
    @lumin0l161 Год назад

    Epic series, John. Thank you mate.

  • @Semtx552
    @Semtx552 2 года назад

    incredibly valuable John, thanks so much for this.

  • @AuctorisVideo
    @AuctorisVideo 2 года назад

    Loving this series John. Very interesting. Thankyou.

  • @chanceleram
    @chanceleram 2 года назад

    thank you so much for sharing even when you commit a mistake !!!

  • @jonathanheadley2729
    @jonathanheadley2729 Год назад

    Loving the content, John. Thank you!

  • @dwightschrute08
    @dwightschrute08 2 года назад +1

    In case anyone else wants to do this, you'll need to add the stable 4.4 repo to your apt sources, not 4.0 per the Bloodhound instructions. Also, might have to uncomment "dbms.allow_upgrade=true" in the neo4j config file (/etc/neo4j/neo4j.conf) in order for the database to run properly.

    • @Pyroteq
      @Pyroteq 2 года назад

      Yeah, I screwed around for ages trying to get this working. Bloodhound-Python wants you to have version 4.2 of Bloodhound and Bloodhound 4.2 wants you to have version 4.4 of Neo4j. I had to nuke Neo4j and ensure I cleaned up all the old database files and config files and then reboot before I could get Neo4j working again when I finally managed to find the latest version of it. Far out, what a headache.

    • @Eggsec
      @Eggsec Год назад

      it's this why my update data isn't uploading anything? currently in 4.2.0 v bloodhound

  • @a1hun7
    @a1hun7 2 года назад

    Oh god, is not fox-it is fox IT as in Information Technology. Is one of the biggest security firms in Europe.

  • @TheH2OWeb
    @TheH2OWeb 2 года назад

    Thank you John !

  • @cedricvillani8502
    @cedricvillani8502 Год назад

    Maltego Enterprise makes sweet face love to this. ❤😂

  • @swyerdon
    @swyerdon Год назад

    Very cool content. Thanks!

  • @TheTricro
    @TheTricro 2 года назад

    Great content as always, keep up the good work!

  • @natemaiorana3936
    @natemaiorana3936 2 года назад

    Great Vid Again John

  • @msaeed5228
    @msaeed5228 2 года назад

    Thanks Hammond, u r amazing

  • @yazeedalotaibi4587
    @yazeedalotaibi4587 2 года назад

    Love the content John. Keep on the grind.

  • @Tekionemission
    @Tekionemission Год назад

    (25:00) - Edit resolv.conf since DNS is not resolving the Domain.
    (25:17) - Bloodhound extractor syntax

  • @a1hun7
    @a1hun7 2 года назад

    good good good...

  • @Lei_Wong
    @Lei_Wong 2 года назад

    Amazing tool, great tutorial

  • @nullneekhil
    @nullneekhil 2 года назад

    Love from india 💖 , love your vedio buddy great work 💖

  • @ifoam
    @ifoam 2 года назад +2

    It's always DNS. I've seen that error too many times. That's what is happening when you try to join a computer to a domain without being able to resolve domain service records.

    • @lordmummie
      @lordmummie 2 года назад +1

      I was looking for this 😂

    • @Stopinvadingmyhardware
      @Stopinvadingmyhardware 2 года назад

      When you don’t own the DNS and it’s some private server yanking your chain.

  • @zer0-skill893
    @zer0-skill893 2 года назад +4

    John, there's a cool CTF I've been playing and I think you'd be interested in it, maybe check it out, it's being run by Deloitte. It's called "hacky holidays 2022"

  • @johnatan5313
    @johnatan5313 10 месяцев назад

    Hello John, I have a dump question, Bloodhound ingestor scrap more informations with a high privileve account or its the same result with a low privilege account ?

  • @eatbreakfasts7993
    @eatbreakfasts7993 Год назад

    So mention being able to "see and access" the domain controller... If I'm unable to ping the domain controller does that mean I can't see it? I'm trying to run this in my lab and I can ping the Kali machine from the DC machine but not vice versa.

  • @martx0013
    @martx0013 Год назад

    👽

  • @jimo8486
    @jimo8486 2 года назад

    did i hear a police siren in the background at 29:26

  • @Aerogamer158
    @Aerogamer158 2 года назад

    Question. Why do you not use sudo su for all that terminal install stuff in your videos?

  • @aspeakgaming3564
    @aspeakgaming3564 2 года назад

    be carefull your add can be interpreted as 1$ the all bundle....but not true to get the all bundle it is 24.06 for the all bundle (worth anyway)

  • @Stopinvadingmyhardware
    @Stopinvadingmyhardware 2 года назад

    I’m the guy that enters funny jokes for commits on GitHub

  • @logiciananimal
    @logiciananimal 2 года назад

    Has anyone ever tried to get a *print* copy via the humble bundle idea? I'd be willing to pay fair value but I really don't want ebooks ...

  • @devilveyron6762
    @devilveyron6762 2 года назад +1

    Hi

  • @slonkazoid
    @slonkazoid 2 года назад

    tip: run `exec $0` to restart your shell without starting a new terminal

    • @slonkazoid
      @slonkazoid 2 года назад

      sourcing /etc/profile is another option but this method replaces the current process image a with a new one, doesn't just reload the shell

  • @nekoda9379
    @nekoda9379 2 года назад

    Ahh yess, BloodHound > Gibby

  • @itssoEC
    @itssoEC 9 месяцев назад

    I have tried setting up on 3 different machines and only one gave me the new temporary password. I'm not sure what happened, but I haven't found a solution yet. Is there a link to a solution available. I will keep looking, but my google-fu hasn't worked yet.

  • @yamangoyal405
    @yamangoyal405 2 года назад

    Can anyone give me the link of this humble bundle link... Plz

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 Год назад

    This is eroo mark domnam password missing sind elements

  • @kraemrz
    @kraemrz 2 года назад

    YT algorytm

  • @P2Pyt
    @P2Pyt 2 года назад

    Can u beat anonymous

  • @edbolton
    @edbolton 2 года назад +1

    …it’s always DNS

  • @msasdc2087
    @msasdc2087 2 года назад

    Hahaha, still a zero.

  • @erikalee5796
    @erikalee5796 2 года назад

    p͓̽r͓̽o͓̽m͓̽o͓̽s͓̽m͓̽ 💖

  • @i_am_christoph1537
    @i_am_christoph1537 2 года назад

    Hey John, I sent you a message on Discord and tried to email. How does one get in contact with you?

  • @ratchetbear5916
    @ratchetbear5916 11 месяцев назад

    Wasn't able to get the command @ 25:22 working, but i found a work around.
    command is: bloodhound-python -u [USER]-p [PASS] -ns [IP of DC] -d [Domain.local] -c All
    Wonder if my command will survive?..