README.md

March 14, 2026 ยท View on GitHub

๐Ÿ”‘ Credential Dumping for Pentesters

A practical credential dumping reference and cheat sheet designed for red teamers, penetration testers, and cybersecurity learners to understand how credentials can be extracted from compromised systems during post-exploitation.

๐ŸŒ Connect With Us

๐Ÿ”ต Telegram โ€“ Join Channel
โšซ Twitter/X โ€“ Follow Us
๐ŸŸฃ Discord โ€“ Join Server
๐Ÿ’ผ LinkedIn โ€“ Follow HackingArticles

๐ŸŽ“ Training Program

๐Ÿš€ Join Our Cybersecurity Training Program

Hands-on training in Penetration Testing, Red Teaming, and Cybersecurity.

๐Ÿ”‘ Credential Dumping Techniques

#TopicDescriptionArticle
1๐Ÿ“ถ WirelessExtract stored wireless credentials from compromised systemsRead Article
2๐Ÿ—‚๏ธ Group Policy Preferences (GPP)Dump passwords stored in Group Policy PreferencesRead Article
3๐Ÿ” Windows Credential ManagerExtract credentials stored in Windows Credential ManagerRead Article
4๐Ÿง  WDigestDump cleartext credentials from WDigest authentication protocolRead Article
5๐Ÿ› ๏ธ Security Support Provider (SSP)Extract credentials via SSP injection techniquesRead Article
6๐Ÿ’พ SAMDump password hashes from the Windows SAM databaseRead Article
7๐Ÿ“ฆ Installed ApplicationsExtract credentials stored by installed applicationsRead Article
8๐Ÿ—„๏ธ NTDS.ditDump Active Directory credentials from NTDS.dit databaseRead Article
9๐ŸŽฃ Phishing Windows CredentialsCapture Windows credentials using phishing techniquesRead Article
10๐Ÿงฌ Local Security Authority (LSA/LSASS)Extract credentials directly from LSASS process memoryRead Article
11๐Ÿ“‹ ClipboardCapture sensitive credentials copied to the clipboardRead Article
12๐Ÿ”„ DCSync AttackSimulate a domain controller to dump AD credentialsRead Article
13๐Ÿ”‘ LAPSExtract Local Administrator Password Solution credentialsRead Article
14๐Ÿงพ Domain Cache CredentialDump cached domain credentials from Windows systemsRead Article
15โš™๏ธ Fake ServicesUse malicious services to capture credentialsRead Article
16๐Ÿ”“ Windows Autologon PasswordExtract plaintext autologon passwords from registryRead Article
17๐Ÿง  Internal MonologueNTLM downgrade attack to retrieve cleartext credentialsRead Article
18๐Ÿ” Reversible Password EncryptionDump passwords stored using reversible encryption in ADRead Article
19๐Ÿงพ GMSAExtract Group Managed Service Account passwordsRead Article
20๐Ÿ“ AD User CommentDiscover credentials stored in Active Directory user commentsRead Article

image