Is SMB Signing needed to extract an NTLMv2 hash?

I thought that SMB Signing needed to be enabled for you to capture the Net-NTLMv2 hash with something like responder

I was doing a lab where I captured the hash, but enum4linux-Ng said

SMB Signing required: false

Does this mean that the SMB server signs some messages, but doesn’t “require” signing? Or am I missing something?

I’m pretty confused, so I’d appreciate any input from the power users out there

submitted by /u/Agent-BTZ
[link] [comments]

from hacking: security in practice https://ift.tt/Kfljgup

Comments