Credential Recovery

Offline credential and file recovery with hashcat and john. Use when any skill captures hashes (NTLM, Kerberos TGS/AS-REP, shadow, MSCACHE2) or encrypted files (ZIP, Office, PDF, KeePass, SSH key, 7z, RAR). Trigger phrases: "recover this hash", "offline recovery", "john", "hashcat", "zip2john", "password-protected file". Do NOT use for online password attacks (spraying, brute force against services) — use password-spraying instead.

blacklanternsecurity 5340007 18.9 KB Updated

File contents

blacklanternsecurity/red-run/tree/main/skills/post-exploit/credential-recovery commit 5340007ad2

Frequently asked questions

npx skillmds@latest add blacklanternsecurity/credential-recovery