Kerberoast
In a Kerberoast attack, the attacker requests a Kerberos session ticket (TGS) to retrieve the service account's NTLM hash, which is partially encrypted with the service account's hash. This hash is then cracked offline to extract the service account's password.
SPNs
Find SPNs
Set SPNs
With enough rights (GenericAll/GenericWrite), a target user's SPN can be set
TGS
Crack
Last updated