That DIT is going to take forever to exfiltrate. Better to strip the hashes out and exfiltrate those instead.
https://t.co/JpJlpiI2hA
ntdsAudit.exe '.\Active Directory\ntds.dit' -s registry\SYSTEM -p pwddump.txt -u users.csv
Its c#, so you can reflectively load it in PS, too.
I really enjoyed testing @C5pider's Havoc C2 framework. Wrote a little blogpost, on how to set it up & exploit a fully patched Win11 machine:
https://t.co/Ha9JT2vI0U
Video: https://t.co/6oGAGwk1NM
If you run Kali in VirtualBox, you should prob be familiar with this command to fix clipboard sync: sudo pkill -fx "/usr/bin/VBoxClient --clipboard" && /usr/bin/VBoxClient --clipboard
"Tools such as PC Hunter (which grants access to system processes, kernel modes, and hooks), GMER (which detects and removes rootkits) and Revo Uninstaller (which can uninstall apps and programs) also terminate programs and antimalware solutions."
3/4
https://t.co/zDdkLZoPt0