xsspresso
xsspresso
Tags/ LAPS

LAPS

2 writeups tagged with LAPS

ADMediumWindows

HTB — TheFrizz

Active Directory machine exploiting misconfigured LAPS and ACL abuse chain to escalate from low-privileged user to Domain Admin.

#AD#LAPS#ACL Abuse
Mar 18, 2025HackTheBox
ADEasyWindows

HTB — Timelapse

SMB share contains ZIP with password-protected PFX certificate. Cracked PFX used for WinRM. LAPS password read via LDAP for Administrator.

#AD#LAPS#PFX
Jan 21, 2025HackTheBox