Mimikatz Basics
Mimikatz is a powerful tool to extract plaintext credentials, hashes, and Kerberos tickets from memory. Typically run with Administrator or SYSTEM privileges, itβs vital for Windows privilege escalation and lateral movement.
Basic Commands
Extracting Credentials
Oneliner
Get NTLM Hashes from LSASS:
Dump Kerberos Tickets
Dump Credential Manager
SAM Database
LSA Secrets
Cached Domain Credentials
Lateral Movement
Pass-the-Hash Attack
Pass The Ticket
Golden Ticket
Silver Ticket
Overpass-the-Hash
Last updated