module

Veeam Backup and Replication Credentials Dump

Disclosed
11/22/2022
Created
02/02/2023

Description

This module exports and decrypts credentials from Veeam Backup & Replication and
Veeam ONE Monitor Server to a CSV file; it is intended as a post-exploitation
module for Windows hosts with either of these products installed. The module
supports automatic detection of VBR / Veeam ONE and is capable of decrypting
credentials for all versions including the latest build of 11.x.

Author

npm

Platform

Windows

Module Options

To display the available options, load the module within the Metasploit console and run the commands ‘show options’ or ‘show advanced’:

    msf > use post/windows/gather/credentials/veeam_credential_dump
    msf /(p) > show actions
        ...actions...
    msf /(p) > set ACTION < action-name >
    msf /(p) > show options
        ...show and set options...
    msf /(p) > run
  
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.