针对 Windows PXE 启动镜像的攻击
netspi.com | 博客 | #windows | #lateral-movement | #pxe | #credential-harvesting | #network-pentesting | #mdt
摘要
针对不安全的 Windows PXE 网络启动部署,梳理三类攻击:安装阶段植入后门、从 VM 内存与 Unattend/Sysprep 文件抓取凭据、导出 SAM 哈希进而横向或纵向移动,并附缓解与防护建议。
- 发布时间
- 收录时间
Skip to content