URL details: eladshamir.com/2022/02/10/SPN-jacking.html

URL title: SPN-jacking: An Edge Case in WriteSPN Abuse | Elad Shamir
URL description: Some people are a hammer in search of a nail, but I'm a hammer in search of Kerberos delegation. So, when I heard that a WriteSPN edge was introduced to Bloodhound 4.1, I started exploring alternative abuse techniques beyond targeted Kerberoasting, and I found an edge case (pun intended) that can be chained together with Kerberos Constrained Delegation. Tl;dr Suppose an attacker compromises an account set for Constrained Delegation but doesn't have the SeEnableDelegation privilege. The attacker won&
URL last crawled: 2022-05-25
URL speed: 0.704 MB/s, downloaded in 0.030 seconds

open external url

We found no external links pointing to this url.