Pentest Enumiration for macOS

Hello, Khabrovites. In anticipation of the start of the course "Pentest. Practice of Penetration Testing", we invite you to sign up for an open lesson on the topic "Windows ad: collecting information, escalating privileges . "







And also we want to share with you another author's article from our expert - Alexander Kolesnikov.










Typically, the infrastructure is built on Linux and Windows operating systems. And it would seem, why bother with the problems of other operating systems? It's simple. Pentest is a constant development, the study of new technologies. In addition, machines in the infrastructure that run on the macOS operating system are no longer such a rarity.





The article does not claim to be complete information on the MacOS platform, but only demonstrates mechanisms and data that, in the opinion of the author, can be useful.





MacOS

MacOS β€” , β€œβ€ . , , Linux. , XNU (X is Not Unix). , - . , , :





. β€œDirectory Services”. , , . , , BSD . , MacOS Darwin, Open Source . 





macOS 2 :





  1. MacOS β€” , Apple.





  2. MacOS Server β€” , .





Apple, . MacOS MDM OpenDirectory , Server. , . , macOS Server:





  1. Open Directory β€” , Active Directory OC Windows.





  2. Profile Manager β€” .





  3. Xsan β€” .





, Active Directory. MacOS, , , , Windows AD. MacOS Open Directory β€” Active Directory.





MacOS

, macOS . , , . , macOS (System Preferences->Users&Groups):





  1. Standart user β€” , .





  2. Administrator β€” , , , .





  3. Sharing Only β€” , .





  4. Groups β€” , Linux/Unix , , .





root, Apple . , Windows . , , dscl β€” β€œβ€ , , .





, , , , : 





dscl . ls /Users
      
      



, , 1 , 141 . β€œβ€ , .





, . macOS , Windows AD. β€” β€œproperty” . , ls cat:





dscl . cat /Users/daemon
      
      



, . β€œβ€ , β€” root:





, plist β€” iOS macOS . β€œProperty” β€œβ€ Active Directory. SMBSID, RecordName UniqueId. . dscl :





dscl . ls /
      
      



, Active Directory macOS. , Windows  net users/net groups



.





MacOS Active Directory

AD. , macOS. , ? LDAP? ? ?





:





, :





:





:





, .





. , , . , , , , macOS. ? macOS .






". ".



"Windows ad: , ".





:

  • Windows












All Articles