gptkbp:instanceOf
|
Windows API
|
gptkbp:abbreviation
|
gptkb:SAM
|
gptkbp:canBeBackedUpBy
|
gptkb:Volume_Shadow_Copy_Service
gptkb:System_Restore
|
gptkbp:cannotBeAccessedWhileRunning
|
true
|
gptkbp:category
|
gptkb:security
authentication
Windows internals
|
gptkbp:controlledBy
|
gptkb:Local_Security_Authority_Subsystem_Service
gptkb:LSASS
|
gptkbp:developedBy
|
gptkb:Microsoft
|
gptkbp:encryptionUsed
|
gptkb:DPAPI
SYSKEY (historically)
|
gptkbp:fileLocation
|
%SystemRoot%\\system32\\config\\SAM
|
https://www.w3.org/2000/01/rdf-schema#label
|
Security Account Manager
|
gptkbp:numberOfLocations
|
password hashes
user account information
|
gptkbp:relatedTo
|
gptkb:Active_Directory
gptkb:NTLM
gptkb:Windows_Registry
|
gptkbp:usedFor
|
gptkb:government_agency
authentication
|
gptkbp:usedIn
|
gptkb:Microsoft_Windows_11
gptkb:Microsoft_Windows_8
gptkb:Microsoft_Windows_2000
gptkb:Microsoft_Windows_NT
gptkb:Microsoft_Windows_7
gptkb:Microsoft_Windows_Server_2003
gptkb:Microsoft_Windows_Vista
gptkb:Microsoft_Windows_XP
gptkb:Microsoft_Windows_10
|
gptkbp:vulnerableTo
|
pass-the-hash attacks
SAM file extraction attacks
|
gptkbp:bfsParent
|
gptkb:SAM
|
gptkbp:bfsLayer
|
6
|