Exploit PrintNightmare vulnerability to add local administrator

Stages and executes Invoke-Nightmare used by Conti to gain local admin.
View Command

To view this TTPs command, you must be logged in with a professional or enterprise license.


Test this TTP

Download Operator (1.7.1)
Test this TTP using one of our Operator chains
Conti Privilege Escalation and Persistence


Use PrintNightmare & ZeroLogon exploits to gain privileges and extract the krbtgt NTLM hash from a DC.