AD Security Series Part 1: How to Audit and Fix Kerberoasting & AS-REP Roasting
Introduction Start by explaining that attackers don’t always need to “break in”—sometimes they just “ask.” “In Active Directory, certain accounts are configured in a way that allows any authenticated user …