peewpw / Invoke Wcmdump
Licence: apache-2.0
PowerShell Script to Dump Windows Credentials from the Credential Manager
Stars: ✭ 644
Programming Languages
powershell
5483 projects
Invoke-WCMDump
PowerShell script to dump Windows credentials from the Credential Manager
Invoke-WCMDump enumerates Windows credentials in the Credential Manager and then extracts available information about each one. Passwords are retrieved for "Generic" type credentials, but can not be retrived by the same method for "Domain" type credentials. Credentials are only returned for the current user.
Does not require admin privileges!
Author: Barrett Adams (@peewpw)
Example
PS>Import-Module .\Invoke-WCMDump.ps1
PS>Invoke-WCMDump
Username : testusername
Password : [email protected]!
Target : TestApplication
Description :
LastWriteTime : 12/9/2017 4:46:50 PM
LastWriteTimeUtc : 12/9/2017 9:46:50 PM
Type : Generic
PersistenceType : Enterprise
Note that the project description data, including the texts, logos, images, and/or trademarks,
for each open source project belongs to its rightful owner.
If you wish to add or remove any projects, please contact us at [email protected].