Is the AS-REQ Kerberoast attack on AD a violation of Kerberos RFCs?
The new Kerberos AS-REQ-requested attack is somewhat different from a normal Kerberoast, in that instead of requesting a Service Ticket (for offline cracking) via a normal TGS-REQ, it’s requested via an AS-REQ, which is normally only used … Continue reading Is the AS-REQ Kerberoast attack on AD a violation of Kerberos RFCs?