Skip to content

A short script to automate the process of RDP session hijacking.

Notifications You must be signed in to change notification settings

pyrrh1c/Start-RdpSessionTakeover

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

12 Commits
 
 
 
 

Repository files navigation

Pyrrh1c

Start-RdpSessionTakeover

A short script to automate the process of RDP session hijacking. When run without any parameters it will enumerate all existing RDP sessions and prompt for a session to be taken over. This script requires local admin to run.

Main Features

  • Easy enumeration of sessions
  • Automatic configuration of RDP shadowing
  • Fast and easy lateral movement and privelege escalation

When To Use This Script

Perhaps you've owned a users who is a local administrator of a server. Another user who is a domain admin has a session on that server. With this you can quickly and easily begin viewing and/or interacting with their RDP session.