BloodHoundAD / BloodHound

Six Degrees of Domain Admin
GNU General Public License v3.0
9.92k stars 1.74k forks source link

Invoke-Bloodhound doesn't give me any output #719

Open sagisar1 opened 5 months ago

sagisar1 commented 5 months ago

Hello, I am using evil-winrm on kali linux ,connected to the Forest dc machine of HTB I have downloaded to my kali machine the latest version of sharphound.ps1 in order to use it in evil-winrm. Also I am using the latest version of evil-winrm I am doing two commands:

Import-Module .\SharpHound.ps1 #this command works good and loads the module into the memory Invoke-BloodHound -c all

the second command however doesn't produce any output. I have tried different flags, nothing works. I also searched over the internet and it seems that people are getting output, but i don't (for example this blog https://stridergearhead.medium.com/domain-enumeration-using-bloodhound-f2894d5f0da8)

Iso why am i not getting any output file? or any output at all

abazzalo commented 2 months ago

Same problem here, have you found any solution? Through RDP works smoothly.

sagisar1 commented 2 months ago

No man, I didn’t find a solution, that’s why I opened this issue…

leechristensen commented 2 months ago

If you supply explicit credentials or make/steak a token does it work? Thought being you are using WinRM, which performs a network login. So you're running into the double hop problem.

abazzalo commented 2 months ago

If you supply explicit credentials or make/steak a token does it work? Thought being you are using WinRM, which performs a network login. So you're running into the double hop problem.

Thanks dude! You're right, that's the problem, more info here: https://book.hacktricks.xyz/windows-hardening/active-directory-methodology/kerberos-double-hop-problem I'll try one of the alternatives since I don't have RDP access in this box