NTLM Relay & Coercion

Authenticate as someone else without their password. Every attack covered with working commands: Responder poisoning, mitm6 IPv6, Coercer/PetitPotam/PrinterBug, relay to SMB/LDAP/ADCS/MSSQL, RBCD full chain, Shadow Credentials, ESC8→DCSync. Detection (EventIDs, KQL, named-pipe signatures) and the GPO fixes that actually kill it. Authorised engagements only.

Related Articles