Windows Exploits and Forensics: SMB & PsExec
When carrying out security operations in a Windows environment you need to know what kind of attacks exploits and vulnerabilities to look out for. This course covers two of the most common services used to attack a Windows-based network – SMB and PsExec – along with some popular attack methodologies. Youll start by examining SMB permissions and default settings. Youll then explore tools to enumerate SMB shares and data. Next youll investigate how to identify SMB vulnerabilities and recognize SMB attacks. Youll then conduct different SMB exploits including brute force and denial of service attacks. Youll move on to outline how PsExec works and use it to execute remote commands. Finally youll practice exploiting PsExec using various tools including the EternalBlue exploit.