> For the complete documentation index, see [llms.txt](https://yamortsa.gitbook.io/rto/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://yamortsa.gitbook.io/rto/credential-theft/obtaining-credential-material.md).

# Obtaining Credential Material

Once elevated on a machine, we can obtain credential material for other users who are authenticated. Credentials can come in the form of plaintext (username & password), hashes (NTLM, AES, DCC, NetNTLM, etc), and Kerberos tickets. This chapter will review how to dump creds in various formats. The **User Impersonation** chapter will show how these different credential formats can be leveraged.
