What are two exploitation methods for obtaining the data.mdb file mentioned in the article?
The first method requires already having vCenter local administrator privileges to directly access the file at /storage/db/vmware-vmdir/data.mdb. The second method involves obtaining the data.mdb file from vCenter backup files, which could be leaked or improperly secured. --- **Related reading:** - [vSphere Development Guide 6 - vCenter SAML Certificates](/news/vsphere-development-guide-6-vcenter-saml-certificates) — original article - [Penetration Techniques - Deleting Single Windows Log Entries](/news/penetration-techniques-deleting-single-windows-log-entries) - [Penetration Technique: Remote Access to Exchange PowerShell](/news/penetration-technique-remote-access-to-exchange-powershell) - [Zimbra SOAP API Development Guide 2](/news/zimbra-soap-api-development-guide-2)
Related article:
vSphere Development Guide 6 - vCenter SAML Certificates