LM/NTLM Hash Support for SMB Credentials
by Ron Gula on June 27, 2007
Tenable Network Security's Research staff recently added the ability to use LanMan/NTLM hashes as a form of credentials for Windows audits. If you use Nessus as a penetration testing tool, this allows you to take the hashes you have obtained with pwdump, lsadump, Cain, .etc, and use them to perform Nessus audits.
Leveraging Hashes and Nessus for Penetration Testing
Below is a screen shot of adding a hash to a Nessus scan policy: