File Shares

There are multiple different highly technical ways of extracting credentials from various places within Active Directory. However, like social engineering, users can allow us access in times when technical protections require much time and expertise.

People like to store passwords in Excel files or Word files or batch scripts or PowerShell scripts or PDFs or x y z. Why not look for these files?

Manspider

Manspider is a great tool for spidering SMB file shares to search for files that match what you're looking for. Here are the ones I almost always attempt (examples are similar to ones in the GitHub repository):

circle-info

Any files identified will go to your ~/.manspider/loot/ directory by default.

circle-exclamation

Last updated