I usually just try SMB because it’s so much faster and uses the same account database. The only time I usually see RDP open when SMB isn’t is for jump boxes, and those are usually configured to use multi-factor authentication, so there’s no real point in trying a password-guessing attack.
If you can MitM with Cain, it’ll try to drop the security level of the RDP session, and if successful, can capture RDP network communications in clear-text.
Viewing 2 reply threads
You must be logged in to reply to this topic.
– EH-Net Live!“CISO Underrepresented“ w/ Mark Arnold and Steph Ihezukwu on Tues June 30 @ 1:00 PM US ET. Reg Open Now!