3 ms·
NTLM is often used for more of the underlying technologies, some more secure than others… nthash, net-ntlmv1, net-ntlmv2. There’s a little more complexity here
by coopreme 9mo ago
NTLM is often used for more of the underlying technologies, some more secure than others… nthash, net-ntlmv1, net-ntlmv2. There’s a little more complexity here and this is different than the stuff that was out 15 years ago
- bri3d 9mo ago> this is different than the stuff that was out 15 years ago This stuff was out at least 10-15 years ago. It’s different from the ancient local ntlm hash cracking everyone used to get admin in high school, yes, but it’s not a novel technique. on cursory google, https://github.com/NotMedic/NetNTLMtoSilverTicket/blob/master/Readme.md https://github.com/NotMedic/NetNTLMtoSilverTicket/blob/maste... is 6 years old and was old news when it was committed, and https://crack.sh/netntlm/ https://crack.sh/netntlm/ has been around online for at least 10 and I think more like 15+ years.
- patmorgan23 9mo agoMicrosoft has deprecated NTLM and is actively ripping it out of windows. https://support.microsoft.com/en-us/topic/upcoming-changes-to-ntlmv1-in-windows-11-version-24h2-and-windows-server-2025-c0554217-cdbc-420f-b47c-e02b2db49b2e https://support.microsoft.com/en-us/topic/upcoming-changes-t... Windows 11 is probably the last version that will contain NTLM (and hopefully NTLMv2). Going forward everything will be Kerberos or Oauth based.
- bigfatkitten 9mo agoIronically enough, the things that tend to break first when you try to turn off NTLM are still Microsoft products like ADCS.