responder
- network sniffing and hash capturing for windows AD
installation
usage
passive listening
capturing hashes
- will be detected my microsoft defender and Sentinel (2022/Q4)
newer version:
- how to crack hashes: crack captured responder hashes
forwarding to ntlmrelayx
- disable SMB/HTTP in config
- with responder]