Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

"Password provided for encoded certificate is not correct" #60

Open
7MinSec opened this issue Jan 28, 2025 · 1 comment
Open

"Password provided for encoded certificate is not correct" #60

7MinSec opened this issue Jan 28, 2025 · 1 comment

Comments

@7MinSec
Copy link

7MinSec commented Jan 28, 2025

Hello!

On a recent pentest I ran pxethiefy and got:

[+] Blank password on PXE media file found!
[*] Attempting to decrypt it...
[+] Media variables file to decrypt: blah.{blah}.boot.var
[+] Password bytes provided: BIGSTRING
[+] Successfully decrypted media variables file with the provided password!

It went on to give me the string SharpSCCM should need to get secrets, but when I ran that in the environment I got:

 _______ _     _ _______  ______  _____  _______ _______ _______ _______
  |______ |_____| |_____| |_____/ |_____] |______ |       |       |  |  |
  ______| |     | |     | |    \_ |       ______| |______ |______ |  |  |    @_Mayyhem

[-] Provided password for encoded certificate (Encoded String:xxxxxxx...) is not correct.
[+] Completed execution in 00:00:00.2791522

(xxxxxxx is the value of the long '-c` string).

Could you help troubleshoot this?

@Mayyhem
Copy link
Owner

Mayyhem commented Jan 28, 2025

Hey @7MinSec , I'm sorry for missing your open issue before! I'd be happy to help troubleshoot. This could be difficult without access to the environment you're assessing, so a conversation in the BloodHound Slack might be easiest so we can check a few things. Could you please hit me up there? My handle is Mayyhem. https://ghst.ly/BHSlack

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

2 participants