Kerberoasting

Kerberoasting is a persistent vulnerability in Microsoft’s Active Directory that exploits weak service account passwords, allowing attackers to crack them offline. Despite being a known issue for over a decade, it remains prevalent due to legacy systems and insufficient mitigation efforts by Microsoft. This flaw enables lateral movement within corporate networks and has been linked to ransomware attacks, highlighting the need for stronger security measures and abandonment of outdated cryptographic practices.

https://blog.cryptographyengineering.com/2025/09/10/kerberoasting/

Leave a Comment

Your email address will not be published. Required fields are marked *

Scroll to Top