Enumeration
Overview
MS SQL Server integrates right out the box with Windows and Active Directory Domains. Consequently, there are trust relationships which we can leverage from an attacker perspective.
Enumeration
Identifying MS SQL Server within an AD domain
Using PowerUpSQL
PowerUpSQL includes functions that support SQL Server discovery, weak configuration auditing, privilege escalation on scale, and post exploitation actions such as OS command execution.
Testing connectivity
Using PowerUpSQL
Enumeration SQL server links
SQL Server links are a feature in Microsoft SQL Server that allow you to connect to and access data from another SQL Server instance or another database system.
References
Last updated