Skip to content

jackullrich/AADBrokerDecrypt

Repository files navigation

About

This repository contains research artifacts and reversed-code analysis related to the LocalState cache used by the AAD Broker. The project documents how to fully decrypt the file formats found in the cache. It also implements logic from reverse engineered portions of AAD.Core.dll related to the naming conventions of the cache files.

https://winternl.com/aad-broker-cache

References

License

Code is released under the MIT license.

About

No description, website, or topics provided.

Resources

License

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages