URL details: eladshamir.com/2022/02/10/SPN-jacking.html
URL title:
SPN-jacking: An Edge Case in WriteSPN Abuse | Elad Shamir
URL description:
Some people are a hammer in search of a nail, but I'm a hammer in search of Kerberos delegation. So, when I heard that a WriteSPN edge was introduced to Bloodhound 4.1, I started exploring alternative abuse techniques beyond targeted Kerberoasting, and I found an edge case (pun intended) that can be chained together with Kerberos Constrained Delegation. Tl;dr Suppose an attacker compromises an account set for Constrained Delegation but doesn't have the SeEnableDelegation privilege. The attacker won&
URL last crawled:
2022-05-25
URL speed:
0.704 MB/s,
downloaded in 0.030 seconds
We found no external links pointing to this url.