166 terms · 75/46/45
kompozit · edukator režim · za predavanje i PDF

Kerberoasting

Pretnja u centru, tehnike kojima se izvodi levo, odbrane koje je suzbijaju desno. Ispod — mapa faza napada: kojom tehnikom se ulazi i koja odbrana je presreće.

↘ Techniques used to carry it out4

threat · № 022 · identity

Kerberoasting

Kerberoasting is an attack specific to Windows domain networks and Active Directory (AD). User logins are handled by the Kerberos protocol, which issues tickets as proof of identity. In a domain environment there are non-user accounts — service accounts — under which most background tasks and services run, such as databases and business applications. Service accounts are set up so that any user can request a ticket for access to a given service. The catch is that the ticket is encrypted with the service account's password.

↓ izvor: prvi po vezama Najčešći ulaz: Credential Abuse. Ključna odbrana: Logging & Monitoring.

↗ How it is defended against4