Exploit Notes

Netlogon Elavasion of Privilege

Last modified: 2023-02-08

Active Directory Windows

It is a vulnerability to elevate of privilege in Windows Netlogon using the Netlogon Remote Protocol (MS-NRPC). It’s called Zerologon (CVE-2020-1472).

Exploitation

There is a lot of Poc in online.
Here, we’ll use this repository from GitHub.

Tools by HDKS

Fuzzagotchi

Automatic web fuzzer.

aut0rec0n

Auto reconnaissance CLI.

Hash Cracker

Hash identifier.