-
Notifications
You must be signed in to change notification settings - Fork 0
Open
Description
Looked into your mimikatz payload.
It would be a good idea to load mimikatz via covert HID channel into the PowerShell session and get rid of the webserver. Seems I need to develop another HID payload and a built-in command for P4wnP1 to download files via HID into memory. This would be less evasive and could nicely deal with endpoint protections which don't account for USB HID PnP devices.
Would you like to contribute payloads to P4wnP1? (guess I need to finalize the payload format to avoid reworking them all the time)
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels