From d7c97aabe8e66d09bc56ce89c04dc9b6b3b11ce8 Mon Sep 17 00:00:00 2001 From: 0iphor13 <79219148+0iphor13@users.noreply.github.com> Date: Sat, 2 Jul 2022 17:17:04 +0200 Subject: [PATCH] added Disclaimer Added disclaimer about samdump2 --- payloads/library/credentials/SamDumpBunny/README.md | 7 +++++-- 1 file changed, 5 insertions(+), 2 deletions(-) diff --git a/payloads/library/credentials/SamDumpBunny/README.md b/payloads/library/credentials/SamDumpBunny/README.md index 7d023d7e..683fd00d 100644 --- a/payloads/library/credentials/SamDumpBunny/README.md +++ b/payloads/library/credentials/SamDumpBunny/README.md @@ -15,7 +15,10 @@ Afterwards you can use a tool like samdump2 to extract the users hashes.

2. Unzip the exfiltrated zip file onto your machine. -3. Use a tool like samdump2 on your machine to extract the users hashes. +3. Use a tool like samdump2 or pypykatz on your machine to extract the users hashes. > `samdump2 BunnySys BunnySam` + or `pypykatz registry BunnySys --sam BunnySam` + + **!Disclaimer! samdump2 has proven to be unreliable in the recent past.** -![alt text](https://github.com/0iphor13/omg-payloads/blob/master/payloads/library/credentials/SamDumpCable/sam.png) \ No newline at end of file +![alt text](https://github.com/0iphor13/omg-payloads/blob/master/payloads/library/credentials/SamDumpCable/sam.png)