Last updated 1 year ago
Videos:
"How a Golden Ticket Attack Works" by NetWrix
"How a Silver Ticket Attack Works" by NetWrix
"How a DCSync Attack Works" by NetWrix
"Kerberos Authentication Explained" by Destination Certification
"Kerberos and Attacks" SANS Webcast by Tim Medin
"Kerberos Delegation and Protocol Transition" by F5 DevCentral
"Certified Pre-Owned: Abusing Active Directory Certificate Services" by Will Schroeder & Lee Christensen
Related Reading:
A Red Teamer's Guide to GPOs and OUs
ActiveDirectory Module - Microsoft Documentation
"He Perfected a Password-Hacking Tool - Then the Russians Came Calling" by Wired (story behind Mimikatz)
Exploiting Unconstrained Delegation
Service Principal Names (SPNs) - Microsoft Documentation
What is a Pass-the-Hash Attack?
Cracking Kerberos TGS Tickets Using Kerberoast – Exploiting Kerberos to Compromise the Active Directory Domain