LLMNR Poisoning
Steps
Run Responder
Wait for an event (SMB connection, User login, etc.)
Capture Hashes
Crack Hashes
Responder
General Usage: sudo responder -I [net interface] -dPv
sudo responder -I eth0 -dPv
Crack NTLMv2 Hashes
Refer to the Hashcat page under Password Cracking section: NTLMv2 Hash
Last updated

