Description
This module will help you to get Administrator access to OS using an unprivileged Oracle database user (you need only CONNECT and RESOURCE privileges). To do this you must firstly run smb_sniffer or smb_relay module on your server. Then you must connect to Oracle database and run this module Ora_NTLM_stealer.rb which will connect to your SMB server with credentials of Oracle RDBMS. So if smb_relay is working, you will get Administrator access to server which runs Oracle. If not than you can decrypt HALFLM hash.
Module options
To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':
msf > use auxiliary/admin/oracle/ora/ntlm_stealermsf undefined(ntlm_stealer) > show actions ...actions...msf undefined(ntlm_stealer) > set ACTION < action-name >msf undefined(ntlm_stealer) > show options ...show and set options...msf undefined(ntlm_stealer) > runPrioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub