Cracking Kerberos TGS Tickets Using Kerberoast ...
https://adsecurity.org/?p=229306.01.2016 · Microsoft's Kerberos implementation in Active Directory has been targeted over the past couple of years by security researchers and attackers alike. The issues are primarily related to the legacy support in Kerberos when Active Directory was released in the year 2000 with Windows Server 2000. This legacy support is enabled when using Kerberos RC4 encryption ...
Cracking Kerberos TGS Tickets Using Kerberoast – Exploiting ...
adsecurity.orgJan 06, 2016 · Note that the service ticket requested has the RC4 encryption type. Looking at a packet capture, we can see the Kerberos communication and note that the ticket is RC4-HMAC-MD5. 3. Once the ticket is is received by the client, we can use Mimikatz (or other) to export all Kerberos tickets in the user’s memory space without elevated rights. 4.