daemon-sec-cheatsheet

The cheatsheet vault for operators: AD, enumeration, exploitation, priv-esc, web, DFIR
git clone https://git.daemon-sec.xyz/daemon-sec-cheatsheet.git
Log | Files | Refs | README | LICENSE

rdpexec.md (985B)


      1 ---
      2 title: "RDPexec"
      3 section: "Windows"
      4 sectionSlug: "windows-hardening"
      5 sourcePath: "src/windows-hardening/lateral-movement/rdpexec.md"
      6 sourceUrl: "https://github.com/HackTricks-wiki/hacktricks/blob/188de82beb54e70956b2952367a0af91d26758b8/src/windows-hardening/lateral-movement/rdpexec.md"
      7 sha: "188de82beb54e70956b2952367a0af91d26758b8"
      8 isIndex: false
      9 modified: true
     10 license: "CC-BY-NC-4.0"
     11 ---
     12 
     13 # RDPexec
     14 
     15 ## How It Works
     16 
     17 **RDPexec** refers to executing commands on a remote system after logging in through Remote Desktop Protocol (RDP). RDP provides a remote graphical interface and normally requires an authorized account on the target host.<sup>[[1]](#references)</sup>
     18 
     19 For background on RDP enumeration, configuration, and attack techniques, see:
     20 
     21 [Pentesting Rdp](/hacktricks/network-services-pentesting/pentesting-rdp)
     22 
     23 ## References
     24 
     25 - [1] [Microsoft Learn - About Remote Desktop Services](https://learn.microsoft.com/en-us/windows/win32/termserv/about-terminal-services)