xsspresso
xsspresso
Tags/ ASREPRoasting

ASREPRoasting

2 writeups tagged with ASREPRoasting

ADHardWindows

HTB — Blackfield

ASREPRoasting yields crackable hash. ForceChangePassword on account via BloodHound. Volatility lsass dump reveals backup operator for DCSync.

#AD#ASREPRoasting#BloodHound
Jan 23, 2025HackTheBox
ADEasyWindows

HTB — Sauna

ASREPRoasting on user names enumerated from the bank website. DCSync attack via GenericAll rights for Domain Admin hash dump.

#AD#ASREPRoasting#DCSync
Jan 20, 2025HackTheBox