TargettedKerbroasting

This abuse can be carried out when controlling an object that has a GenericAll, GenericWrite, WriteProperty or Validated-SPN over the target. A member of the Account Operatorarrow-up-right group usually has those permissions.

The attacker can add an SPN (ServicePrincipalName) to that account. Once the account has an SPN, it becomes vulnerable to Kerberoastingarrow-up-right. This technique is called Targeted Kerberoasting.

From UNIX-like systems, this can be done with targetedKerberoast.pyarrow-up-right (Python)

targetedKerberoast.py -v -d $DOMAIN_FQDN -u $USER -p $PASSWORD

Last updated