Skip to content

Fix account-as-password with domain controller - #19

Merged
The-Viper-One merged 1 commit into
The-Viper-One:mainfrom
ThatTotallyRealMyth:fix-account-as-password-domain-controller
Sep 17, 2026
Merged

The-Viper-One merged 1 commit into
The-Viper-One:mainfrom
ThatTotallyRealMyth:fix-account-as-password-domain-controller

Conversation

@ThatTotallyRealMyth

Copy link
Copy Markdown
Contributor

I was recently playing around with PsMapExec and noticed that When I used -DomainController, it looked like PsMapExec used $SprayPassword. Checking out the source code, it looked to me like the variable is explicitly cleared to "" in this setting(-AccountAsPassword) which just meant it tested an empty password.

I messaged you on discord but imagine you have been a bit busy so I thought to leave this PR open here. I noticed the issue when doing a pentest and thought it might be relevant for others.

@The-Viper-One
The-Viper-One merged commit 2a3920c into The-Viper-One:main Sep 17, 2026
@The-Viper-One

Copy link
Copy Markdown
Owner

Hey buddy, good catch, thanks for the PR!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants