• Skip to main content
  • Skip to header right navigation
  • Skip to site footer
iGuRu

iGuRu

Real-time Technology News. Opinions & Tweaks

  • / news
  • / infosec
  • / tools
  • / tweaks
  • / dummies
  • / opinions
  • / support
home / tools / kerberoast: Kerberos attack toolkit in Python

kerberoast: Kerberos attack toolkit in Python

15/06/2020 13:22 by Anastasis Vasileiadis

Kerberoasting is an attack method that allows an attacker to hack Active Directory service account passwords offline without fear of being detected.

84308376 43e48700 ab13 11ea 94f2 27d2badb8540 - kerberoast: Kerberos attack toolkit in Python

How it works kerberoast

  1. An attacker scans the Active Directory directory service for user accounts with specified SPN values, using any methods, including PowerShell and LDAP queries, scripts provided by the Kerberoast toolbox, or tools such as PowerSploit
  2. Once a list of target accounts is received, the attacker requests AD access to the service using SPN values
  3. Using Mimikatz, the attacker extracts the service requests to memory and stores the information in a file
  4. Once the credentials are saved to disk, the attacker passes them to a password-breaking script that will run a password dictionary as the NTLM hashes with the exported service requests until the request can be successfully opened. When the request is finally opened, it will be presented to the attacker in clear text.

Installation

pip3 install kerberoast

Application snapshots

autokerberoast invoke autokerberoast base64 - kerberoast: Kerberos attack toolkit in Python

autokerberoast listuserspns - kerberoast: Kerberos attack toolkit in Pythonautokerberoast listuserspns with domain parameter - kerberoast: Kerberos attack toolkit in Python

autokerberoast service ticket hash - kerberoast: Kerberos attack toolkit in Python

autokerberoast service ticket hashes of particular domain and group - kerberoast: Kerberos attack toolkit in Python

empire export service tickets - kerberoast: Kerberos attack toolkit in Python

empire extract service tickets module - kerberoast: Kerberos attack toolkit in Python

empire kerberoast hash - kerberoast: Kerberos attack toolkit in Python

empire kerberoast module - kerberoast: Kerberos attack toolkit in Python

impacket service hash - kerberoast: Kerberos attack toolkit in Python

impacket service ticket request - kerberoast: Kerberos attack toolkit in Python

Video guide

You can download the application from here.

kerberoast: Kerberos attack toolkit in Python was last modified: 15 June, 2020, 1: 22 mm by Anastasis Vasileiadis

Subscribe to our newsletter

no spam

spread the news

  • Facebook
  • Twitter
  • Reddit
  • Printing
  • Email

Read them Technology News from all over the world, with the validity of iGuRu.gr

Follow us on Google News


Competition: toolstag: kerberoast, Kerberos attack toolkit

You May Also Like

Zynix-fusion: Various security tools for pentesters
Gaidaros: Systems analyzer for security vulnerabilities
BlackMamba: Post exploitation framework (multi client)

About Us Anastasis Vasileiadis

Translations are like women. When they are beautiful they are not faithful and when they are faithful they are not beautiful.

Previous Post: « Windows 10 2004: Performs frequent SSD defragmentation
Next Post: BCUninstaller free uninstall junk applications »

Reader Interactions

Comment Policy:

IGuRu.gr does not publish the comments immediately. Malicious comments, comments that include ads, or comments that are offensive are deleted without notice. We do not adopt the opinions expressed by our readers.
Your comments will be displayed after approval by the administrators


Leave your comment
Ακύρωση απάντησης

Your email address is not published. Τα υποχρεωτικά πεδία σημειώνονται με *

 

 © 2021 · iGuRu.gr · ☢ · Keep It Simple Stupid Genesis theme

about  ·   get in touch  ·  rss  ·  sitemap  ·  cough

loadingCancel
Could not post post - check your email address!
Email verification failed, please try again
Your blog can not post posts via email.