Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Wifi in the context of the owner? #3

Open
Daltz333 opened this issue Sep 17, 2018 · 17 comments
Open

Wifi in the context of the owner? #3

Daltz333 opened this issue Sep 17, 2018 · 17 comments

Comments

@Daltz333
Copy link

Daltz333 commented Sep 17, 2018

In the readme it states:

After that, it needs to be run in the context of the user who owns the WiFi network

Could I have a bit of clarification on what that means? Who owns the WiFi network? How do I find out who owns it. Do I just have to log in as that user and run the application via PSExec? @ash47

@ash47
Copy link
Owner

ash47 commented Sep 17, 2018 via email

@Daltz333
Copy link
Author

How would I find that out in a computer with 13+ users on it?

@ash47
Copy link
Owner

ash47 commented Sep 17, 2018 via email

@Daltz333
Copy link
Author

Windows 10.

@ash47
Copy link
Owner

ash47 commented Sep 17, 2018 via email

@Daltz333
Copy link
Author

Yep

@Daltz333
Copy link
Author

Also. Another issue I have come up with, when I run the .exe from an elevated command prompt, I get an empty profiles folder. I am running as what I assume was the first administrator account. There is no log, just an empty profiles folder is generated.

@Daltz333
Copy link
Author

Can I have an update @ash47? Am I doing this wrong?

@Daltz333
Copy link
Author

Daltz333 commented Dec 4, 2018

Should I assume this project is NOT MAINTAINED @ash47 ?

@ash47
Copy link
Owner

ash47 commented Dec 4, 2018 via email

@Daltz333
Copy link
Author

Daltz333 commented Dec 5, 2018

Thanks for the quick response. In the meantime, I have forked the repo and added a bit of debug information myself. My C# knowledge isn't the best, nor do I have an indepth understanding of network internals. I'll work on it when I have the free time though.

@ash47
Copy link
Owner

ash47 commented Dec 5, 2018 via email

@ash47
Copy link
Owner

ash47 commented Dec 8, 2018

Well, not exactly what you wanted, but, I just did another release which will search an additional location for the enterprise credentials, and it adds support for another encryption mechanism.

I'm also looking into the impersonation, it might be possible to just try impersonate every single user to decrypt the keys

@Daltz333
Copy link
Author

Daltz333 commented Dec 8, 2018

Thank you. I will give things a try this Monday!

@Daltz333
Copy link
Author

When running this on a computer with only 3 Administrator accounts (attempted all 3), It fails on Stage 2 Failed to find an encrypted password blob :/

Network Configuration:

Security Type: WPA2-Enterprise
Encryption Type: AES
Authentication Method: Microsoft Protected EAP (PEAP)

Authentication Method Details:
Verify the server's identity by validating the certificate checked
Connect to these servers can't share server name publicly, swowwy
Authentication Method: Secured Password (EAP-MSCHAPv2)

@ash47
Copy link
Owner

ash47 commented Dec 12, 2018 via email

@Daltz333
Copy link
Author

Sure. I can grab it tomorrow, roughly around 1pm EST. I assume you're talking about the stage 1 and stage 2 text files.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants