🧑💼Insider Attack
Tools & Preparation
Orientation
Gaining Local Admin Privileges
# View users under local admins group
net localgroup AdministratorsReset Admin Password Using Offline NT Password and Registry Editor
### Boot from the Media:
1. Insert the bootable USB drive or CD/DVD into the target computer.
2. Restart the computer and enter the BIOS/UEFI settings (usually by pressing F2, F12, DEL, or ESC during startup).
3. Change the boot order to boot from the USB drive or CD/DVD.
### Run the Tool:
1. The Offline NT Password & Registry Editor will boot into a text-based interface.
2. Follow the on-screen prompts:
- **Select the Partition**: Choose the partition where Windows is installed (usually the default is correct).
- **Select the Password Reset Option**: Choose “Password Reset” to modify user accounts.
### Edit User Accounts:
1. **List Users**: The tool will display a list of user accounts. Identify the account for which you want to reset the password.
2. **Edit User**: Select the account and choose the appropriate option:
- **Clear the Password**: This option removes the password entirely, allowing you to log in without a password.
- **Set a New Password**: You can set a new password if desired.
### Save Changes:
1. After making changes, the tool will prompt you to save the modifications. Confirm the changes to write them to the disk.
### Reboot the Computer:
1. Remove the bootable media from the computer.
2. Restart the system. You should now be able to log in without the old password or with the new one if you set it.
Copy SAM File to a USB
Recovering Admins Password
Last updated