Skip to content

Add example to compute Windows Boot Key from 4 LSA registry key class names#2090

Open
MaxToffy wants to merge 1 commit intofortra:masterfrom
MaxToffy:getbootkey
Open

Add example to compute Windows Boot Key from 4 LSA registry key class names#2090
MaxToffy wants to merge 1 commit intofortra:masterfrom
MaxToffy:getbootkey

Conversation

@MaxToffy
Copy link
Contributor

@MaxToffy MaxToffy commented Dec 10, 2025

Description

As discussed in this previous PR with @gabrielg5, I added a script to compute the bootkey from the 4 class names of the LSA registry keys.

Since secretsdump -system $SYSTEM_HIVE LOCAL already outputs the bootkey from a hive, I did not implement it in this script.

Screenshot

getBootKey

@gabrielg5 gabrielg5 self-assigned this Dec 11, 2025
@gabrielg5 gabrielg5 added the in review This issue or pull request is being analyzed label Dec 11, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

in review This issue or pull request is being analyzed

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants