<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Active Directory on Thaddeus Koenig</title><link>https://www.thaddeuskoenig.com/tags/active-directory/</link><description>Recent content in Active Directory on Thaddeus Koenig</description><generator>Hugo</generator><language>en-US</language><copyright>© 2026 Thaddeus Koenig</copyright><lastBuildDate>Thu, 28 Aug 2025 12:36:31 -0400</lastBuildDate><atom:link href="https://www.thaddeuskoenig.com/tags/active-directory/index.xml" rel="self" type="application/rss+xml"/><item><title>16JUL25 - The Credential Theft Shuffle</title><link>https://www.thaddeuskoenig.com/blog/20250716/</link><pubDate>Wed, 16 Jul 2025 11:22:00 -0500</pubDate><guid>https://www.thaddeuskoenig.com/blog/20250716/</guid><description>&lt;h2 id="01-intro"&gt;01. Intro&lt;a href="#01-intro" class="post-heading__anchor" aria-hidden="true"&gt;#&lt;/a&gt;
&lt;/h2&gt;
&lt;p&gt;I was doing the Password Attacks lab in hackthebox academy and I found it pretty interesting so I figured I would redo it and step through how I did it and my thought process to help solidify concepts and because I enjoyed this one, even though it was a bit frustrating initially.&lt;/p&gt;
&lt;h2 id="02-gathering-initial-info"&gt;02. Gathering Initial Info&lt;a href="#02-gathering-initial-info" class="post-heading__anchor" aria-hidden="true"&gt;#&lt;/a&gt;
&lt;/h2&gt;
&lt;p&gt;To start this engagement we know a couple things. We have a user Betty Jade that works at Nexura LLC. We also have a password for the user &lt;code&gt;&amp;lt;REDACTED&amp;gt;&lt;/code&gt; with a reasonable assumption that she reuses passwords. We also have the scope of this engagement with the following devices:&lt;/p&gt;</description></item></channel></rss>