Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[enhancement] Support access to SMB over QUIC (Windows 11 & Windows Server 2022) #16

Open
jsdhasfedssad opened this issue Sep 14, 2022 · 3 comments
Assignees
Milestone

Comments

@jsdhasfedssad
Copy link

Hi,

I see you are planning to add more coercing methods in version 2.0 which is great! Have you heard about NTLMQUIC available and running by default on Windows 11 and Windows Server 2022? TrustedSec describes this in this post and their tools are available here.

Apparently PetitPotam can be used to coerce NTLMQUIC but that also involves additional tools which is not very clean. Is it at all possible to improve this so that all that is needed to coerce NTLMQUIC is your tool? If so, would you be willing to support this?

Thanks!

@p0dalirius
Copy link
Owner

I've opened a discussion about this: #18

@p0dalirius p0dalirius self-assigned this Sep 14, 2022
@p0dalirius p0dalirius changed the title Support for NTLMQUIC? [enhancement] Support access to SMB over QUIC (Windows 11 & Windows Server 2022) Sep 14, 2022
@jsdhasfedssad
Copy link
Author

jsdhasfedssad commented Oct 12, 2022

Update 221012. Akamai Security did apparently find a coercing vulnerability in SMB over QUIC in April. They have now released this POC for exploiting that. However, MS patched the vulnerability in July. Still, maybe the information and code can be valuable.

@p0dalirius
Copy link
Owner

@jsdhasfedssad I will take an in-depth look at this after BlackHat Europe, and I will try to include it in Coercer if possible :)

@p0dalirius p0dalirius added this to the 3.0 milestone Oct 5, 2023
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

2 participants