Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Crownar get hits on all passwords on XRDP unix/linux RDPs #85

Open
scala666 opened this issue Apr 6, 2024 · 0 comments
Open

Crownar get hits on all passwords on XRDP unix/linux RDPs #85

scala666 opened this issue Apr 6, 2024 · 0 comments

Comments

@scala666
Copy link

scala666 commented Apr 6, 2024

I you run crowbar on a list of servers with password list and static user,
crowbar shows RDP-SUCCESS on same IP and port with ALL PASSWORDS.
Shows all xrdp RDPs ip as hits.
Servers that have XRDP software are always shown as success.

command line for kali linux crowbar
crowbar -b rdp -u administrator -C passwordfile.txt -S ipfile.txt -o outputfile.txt -n 400

p.s. shows RDP-SUCCESS: IP:PORT - ADMINISTRATOR:PASS all of them - more than one

or HITS on ACCOUNT_LOCKED_OR_PASSWORD_EXPIRED servers too... with same IP:port - administrator:pass .. all of them

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant