xsspresso
xsspresso
Tags/ Kerberos

Kerberos

3 writeups tagged with Kerberos

ADEasyWindows

HTB — Support

Custom .NET info collector binary contains obfuscated LDAP password. GenericAll on DC via Resource-Based Constrained Delegation for Domain Admin.

#AD#RBCD#BloodHound
Jan 23, 2025HackTheBox
ADEasyWindows

HTB — Return

Network printer admin panel LDAP credential exfiltration via attacker-controlled server. Server Operators group membership for domain privilege escalation.

#AD#LDAP#Server Operators
Jan 22, 2025HackTheBox
ADEasyWindows

HTB — Sauna

ASREPRoasting on user names enumerated from the bank website. DCSync attack via GenericAll rights for Domain Admin hash dump.

#AD#ASREPRoasting#DCSync
Jan 20, 2025HackTheBox