paint-brush
Kerberoasting!by@mikefettis
10,015 reads
10,015 reads

Kerberoasting!

by mike fettis3mAugust 28th, 2018
Read on Terminal Reader
Read this story w/o Javascript
tldt arrow

Too Long; Didn't Read

Lets talk about some old security here. Kerberos! This is a couple years old but sadly still works. Kerberos is the authentication system for windows and ad networks. There is an exploit that allows us to get back a poorly encrypted hash of valuable logins all directly from the domain controller, this is done once you have an authenticated user, so it isn’t the main way in but once you have a foothold you can pivot to a more useful account. Lets have a brief breakdown of how kerberos works, borrowed from <a href="https://adsecurity.org/?p=3458" target="_blank">https://adsecurity.org/?p=3458</a>

Companies Mentioned

Mention Thumbnail
Mention Thumbnail
featured image - Kerberoasting!
mike fettis HackerNoon profile picture
mike fettis

mike fettis

@mikefettis

hacker and janitor building platforms and systems that when they work no one knows they are there.

L O A D I N G
. . . comments & more!

About Author

mike fettis HackerNoon profile picture
mike fettis@mikefettis
hacker and janitor building platforms and systems that when they work no one knows they are there.

TOPICS

THIS ARTICLE WAS FEATURED IN...

Permanent on Arweave
Read on Terminal Reader
Read this story in a terminal
 Terminal
Read this story w/o Javascript
Read this story w/o Javascript
 Lite