mdunten
mdunten
This is based off the registry logging recommendations in Matt Graeber's "Subverting Trust in Windows" white paper. Ref: https://specterops.io/assets/resources/SpecterOps_Subverting_Trust_in_Windows.pdf
Some kind of indicator in the output that would allow for differentiation of the same username with different password. For example, multiple localhost\administrator passwords. Maybe something like a uniq scan...
It would be nice within the csv output to have an indication of whether or not the host was running Samba or Windows.
It would be nice to test a list of multiple usernames/passwords in a single scan.