Kerberoasting Revisited
Offered By: YouTube
Course Description
Overview
Explore Kerberoasting techniques and defenses in this 22-minute conference talk by Will Schroeder at Derbycon 2019. Learn about key encryption types, approaches to Kerberoasting, and the downsides of built-in ticket request methods. Discover the "tgtdeleg" trick for obtaining a user's TGT and how Rubeus can build a better Kerberoast. Gain insights into supported encryption types and understand why they matter in the context of network security.
Syllabus
Intro
# whoami
Background
Key Encryption Types
Using the Goods
Approaches
Kerberoasting Defenses
SupportedEncryption Types
Why Care?
Downsides of Built-in Ticket Request Methods
Obtaining a User's TGT: The "tgtdeleg" Trick
Rubeus: Building a Better Kerberoast
Credits
Related Courses
Privilege Escalation with RubeusPluralsight OS Analysis with HELK
Pluralsight Active Directory Attacks Series
YouTube Kerberoasting and Domain Accounts
Cybrary Zero to Hero - MS17-010-EternalBlue, GPP-cPasswords, and Kerberoasting
Cyber Mentor via YouTube