One Day Sec

What is Lsassy and why is it useful for remote credential extraction from lsass.exe?

Lsassy is an open-source tool designed to automate the remote extraction of password hashes from the lsass.exe process. It addresses key challenges such as requiring remote command execution, handling different dump methods based on protective measures, efficiently transferring large dump files, and automating repetitive tasks across multiple systems. Lsassy supports multiple export methods, directly parses password hashes, and automates operations to improve efficiency compared to manual local extraction methods like those covered in Penetration Basics - Extracting Credentials from lsass.exe Process.
lsassylsassremote credential extractionpassword hashesautomation

Browse all Q&A →