The Burp Suite User Forum was discontinued on the 1st November 2024.

Burp Suite User Forum

For support requests, go to the Support Center. To discuss with other Burp users, head to our Discord page.

SUPPORT CENTER DISCORD

NTLM Hash and kerberos ticket support for platform authentication

Nicholas | Last updated: May 04, 2017 05:30AM UTC

Currently NTLMv1/v2 platform authentication requires the plaintext password, but often the hash value cannot be cracked easily back into plaintext in an expedient manner. Additionally if the hash is generated based on a 2fa request this makes it impractical to provide a plaintext value even when the hash is available from memory or hashdumps from domain sources. Allowing the use of the hash alone for platform authentication would allow access to systems where this issue comes up and has been a problem in a number of scenarios where the only solution has been to use WCE or mimikatz to PTH and launch a process with the hash values, but using the hash would make testing far easier as well as faster than requiring a VM or dedicated machine to do so.

PortSwigger Agent | Last updated: May 04, 2017 07:41AM UTC