BLOODHOUND Domain Enumeration (Active Directory #06)

Поділитися
Вставка
  • Опубліковано 6 січ 2025

КОМЕНТАРІ • 66

  • @mossdem
    @mossdem 2 роки тому +54

    The errors you make show us that we are all human, even you John. Thanks for the great content as always!

    • @Lacsap3366
      @Lacsap3366 2 роки тому +1

      the thing is, I really appreciate that John is not cutting out the tinkering and error solving parts of this video series, because in that way we can learn from his errors and gain more insight on how he solves them.

  • @GC-rg6in
    @GC-rg6in 2 роки тому +5

    You don't need to change /etc/resolve. You can just pass the option -ns

  • @kilarosul
    @kilarosul 2 роки тому +3

    I've been watching videos from your channel like crazy... The fun part is that they are very educational... I've started with THM cuz of you and I've done the begginer path in just under a week. You've managed to inspire me to learn something new and right now I'm just having loads of fun with it. Thank you

  • @stefanfredin7120
    @stefanfredin7120 2 роки тому +2

    I love watching your videos. I used to be in to network security and such, got a job in a completely different direction and never touched it again after school. Now I have trouble even installing software on linux.. It's really relaxing watching people with knowledge doing what you do.

  • @cyberbrain232001
    @cyberbrain232001 2 роки тому +1

    Excellent content and amazing knowledge. I will say your enthusiasm has truly reignited my love of IT. I want to learn and explore and expand my knowledge because of your videos.

  • @theMadhatter817
    @theMadhatter817 Рік тому

    the mistakes are awesome, it helps us learn and shows everyone that its not perfect every time. troubleshooting is something that isnt shown in these types of videos. Thanks!

  • @SP800.69
    @SP800.69 Рік тому +1

    This is awesome. Thanks John.
    The install instructions are a bit messed up now (July 2023).
    Following the install instructions on the site leads to a broken install. At least for me
    My install needed :
    The latest Bloodhound GUI binaries need neo4j 5+
    And neo4j 5 needs Java 17 whereas the instructions install 4.2 with Java 11.

  • @TheCede555
    @TheCede555 9 місяців тому +1

    I died seeing the bloodhound doggo pictures, i think we've all had that moment :'D great videos!

  • @jacobhulbert2976
    @jacobhulbert2976 2 роки тому

    Thanks for all you do John. I have learned so much from you. I just wanted to share with you; when running a command that should use sudo you can just type "sudo !!" and i will append sudo to the last command. It helped my efficiency so I wanted to pass it on. Again blessings :)

  • @Stellar_AI_History
    @Stellar_AI_History 2 роки тому +1

    Good video man. I hate it when people have a host already "compromised" and run sharphound (even though they probably never compromised it and just ran a vw with sharhound on it). I like how you changed it up and are being real! This will help me!

  • @fastforward3695
    @fastforward3695 2 роки тому +6

    I feel like this will be a must have during the PNPT.

  • @piotrstasinskij2929
    @piotrstasinskij2929 Рік тому

    Thank You John for video. Bloodhound is amazing tool for discovering ms ad

  • @alaahaider
    @alaahaider 2 роки тому +3

    John.. you are absolutely awesome. Great tool, great video and most of all great presentation. Very well done 👍

  • @jimpowers4463
    @jimpowers4463 2 роки тому +2

    Really enjoying this series, can't wait to see what's next.

  • @jeanaimarre8605
    @jeanaimarre8605 2 роки тому

    Useful and fun presentation. Please do more. I like the format, the way you explain. Regards

  • @lumin0l161
    @lumin0l161 Рік тому

    Epic series, John. Thank you mate.

  • @jonathanheadley2729
    @jonathanheadley2729 2 роки тому

    Loving the content, John. Thank you!

  • @AuctorisVideo
    @AuctorisVideo 2 роки тому

    Loving this series John. Very interesting. Thankyou.

  • @Tekionemission
    @Tekionemission Рік тому

    (25:00) - Edit resolv.conf since DNS is not resolving the Domain.
    (25:17) - Bloodhound extractor syntax

  • @dunkov1
    @dunkov1 2 роки тому +1

    John, you are amazing! Keep doing this stuff and maybe you know it but you can execute the previous commands with sudo permissions by just typing "sudo !!" 😅 Greetings and respect from Bulgaria!

  • @yazeedalotaibi4587
    @yazeedalotaibi4587 2 роки тому

    Love the content John. Keep on the grind.

  • @natemaiorana3936
    @natemaiorana3936 2 роки тому

    Great Vid Again John

  • @naomibenz5664
    @naomibenz5664 2 роки тому

    Awesome, Bloodhound name looks like those really scary thing like in horror movies really amazed by the creators, they are frictional stuffs, but I really love John your tutorials on point👌

  • @Semtx552
    @Semtx552 2 роки тому

    incredibly valuable John, thanks so much for this.

  • @TheTricro
    @TheTricro 2 роки тому

    Great content as always, keep up the good work!

  • @cedricvillani8502
    @cedricvillani8502 2 роки тому

    Maltego Enterprise makes sweet face love to this. ❤😂

  • @swyerdon
    @swyerdon 2 роки тому

    Very cool content. Thanks!

  • @TheH2OWeb
    @TheH2OWeb 2 роки тому

    Thank you John !

  • @nullneekhil
    @nullneekhil 2 роки тому

    Love from india 💖 , love your vedio buddy great work 💖

  • @msaeed5228
    @msaeed5228 2 роки тому

    Thanks Hammond, u r amazing

  • @chanceleram
    @chanceleram 2 роки тому

    thank you so much for sharing even when you commit a mistake !!!

  • @Lei_Wong
    @Lei_Wong 2 роки тому

    Amazing tool, great tutorial

  • @a1hun7
    @a1hun7 2 роки тому

    Oh god, is not fox-it is fox IT as in Information Technology. Is one of the biggest security firms in Europe.

  • @jimo8486
    @jimo8486 2 роки тому

    did i hear a police siren in the background at 29:26

  • @eatbreakfasts7993
    @eatbreakfasts7993 Рік тому

    So mention being able to "see and access" the domain controller... If I'm unable to ping the domain controller does that mean I can't see it? I'm trying to run this in my lab and I can ping the Kali machine from the DC machine but not vice versa.

  • @johnatan5313
    @johnatan5313 Рік тому

    Hello John, I have a dump question, Bloodhound ingestor scrap more informations with a high privileve account or its the same result with a low privilege account ?

  • @dwightschrute08
    @dwightschrute08 2 роки тому +1

    In case anyone else wants to do this, you'll need to add the stable 4.4 repo to your apt sources, not 4.0 per the Bloodhound instructions. Also, might have to uncomment "dbms.allow_upgrade=true" in the neo4j config file (/etc/neo4j/neo4j.conf) in order for the database to run properly.

    • @Pyroteq
      @Pyroteq 2 роки тому

      Yeah, I screwed around for ages trying to get this working. Bloodhound-Python wants you to have version 4.2 of Bloodhound and Bloodhound 4.2 wants you to have version 4.4 of Neo4j. I had to nuke Neo4j and ensure I cleaned up all the old database files and config files and then reboot before I could get Neo4j working again when I finally managed to find the latest version of it. Far out, what a headache.

    • @Eggsec
      @Eggsec 2 роки тому

      it's this why my update data isn't uploading anything? currently in 4.2.0 v bloodhound

  • @Aerogamer158
    @Aerogamer158 2 роки тому

    Question. Why do you not use sudo su for all that terminal install stuff in your videos?

  • @a1hun7
    @a1hun7 2 роки тому

    good good good...

  • @itssoEC
    @itssoEC Рік тому

    I have tried setting up on 3 different machines and only one gave me the new temporary password. I'm not sure what happened, but I haven't found a solution yet. Is there a link to a solution available. I will keep looking, but my google-fu hasn't worked yet.

  • @Stopinvadingmyhardware
    @Stopinvadingmyhardware 2 роки тому

    I’m the guy that enters funny jokes for commits on GitHub

  • @yamangoyal405
    @yamangoyal405 2 роки тому

    Can anyone give me the link of this humble bundle link... Plz

  • @non2614
    @non2614 25 днів тому

    but on the real system how we can get username and password. if you one of the users domain could you set your userame password

  • @logiciananimal
    @logiciananimal 2 роки тому

    Has anyone ever tried to get a *print* copy via the humble bundle idea? I'd be willing to pay fair value but I really don't want ebooks ...

  • @ifoam
    @ifoam 2 роки тому +2

    It's always DNS. I've seen that error too many times. That's what is happening when you try to join a computer to a domain without being able to resolve domain service records.

    • @lordmummie
      @lordmummie 2 роки тому +1

      I was looking for this 😂

    • @Stopinvadingmyhardware
      @Stopinvadingmyhardware 2 роки тому

      When you don’t own the DNS and it’s some private server yanking your chain.

  • @aspeakgaming3564
    @aspeakgaming3564 2 роки тому

    be carefull your add can be interpreted as 1$ the all bundle....but not true to get the all bundle it is 24.06 for the all bundle (worth anyway)

  • @slonkazoid
    @slonkazoid 2 роки тому

    tip: run `exec $0` to restart your shell without starting a new terminal

    • @slonkazoid
      @slonkazoid 2 роки тому

      sourcing /etc/profile is another option but this method replaces the current process image a with a new one, doesn't just reload the shell

  • @martx0013
    @martx0013 Рік тому

    👽

  • @nekoda9379
    @nekoda9379 2 роки тому

    Ahh yess, BloodHound > Gibby

  • @bhagyalakshmi1053
    @bhagyalakshmi1053 Рік тому

    This is eroo mark domnam password missing sind elements

  • @devilveyron6762
    @devilveyron6762 2 роки тому +1

    Hi

  • @P2Pyt
    @P2Pyt 2 роки тому

    Can u beat anonymous

  • @kraemrz
    @kraemrz 2 роки тому

    YT algorytm

  • @edbolton
    @edbolton 2 роки тому +1

    …it’s always DNS

  • @msasdc2087
    @msasdc2087 2 роки тому

    Hahaha, still a zero.

  • @erikalee5796
    @erikalee5796 2 роки тому

    p͓̽r͓̽o͓̽m͓̽o͓̽s͓̽m͓̽ 💖

  • @zer0-skill893
    @zer0-skill893 2 роки тому +4

    John, there's a cool CTF I've been playing and I think you'd be interested in it, maybe check it out, it's being run by Deloitte. It's called "hacky holidays 2022"

  • @i_am_christoph1537
    @i_am_christoph1537 2 роки тому

    Hey John, I sent you a message on Discord and tried to email. How does one get in contact with you?

  • @ratchetbear5916
    @ratchetbear5916 Рік тому

    Wasn't able to get the command @ 25:22 working, but i found a work around.
    command is: bloodhound-python -u [USER]-p [PASS] -ns [IP of DC] -d [Domain.local] -c All
    Wonder if my command will survive?..