Skip to content

Opening book details…

About this document

DPAPI Exploitation in Pentesting by Вячеслав Казанцев is a document available to read on EtoBox.

This document discusses exploiting DPAPI (Data Protection Application Programming Interface) during a pentest. DPAPI is used to protect secrets like passwords and certificates on Windows systems. The document provides background on DPAPI and how it works, outlines existing tools for decrypting DPAPI secrets, and describes a new technique the author developed to decrypt DPAPI secrets offline by extracting the necessary master keys from the user

Author
Вячеслав Казанцев
Language
EN