Detecting Kerberoasting Activity
May 28 20 2024-5-29 00:20:16 Author: adsecurity.org(查看原文) 阅读量:2 收藏

May 28 2024

Kerberoasting can be an effective method for extracting service account credentials from Active Directory as a regular user without sending any packets to the target system. This attack is effective since people tend to create poor passwords. The reason why this attack is successful is that most service account passwords are the same length as the domain password minimum (often 10 or 12 characters long) meaning that even brute force cracking doesn’t likely take longer than the password maximum password age (expiration).

Continue reading…

(Visited 126 times, 2 visits today)


文章来源: https://adsecurity.org/?p=4430
如有侵权请联系:admin#unsafe.sh