Problem Statement
What does Kerberoasting target in Active Directory?
Explanation
The idea is simple. Ask for a ticket for a service principal name. You get a blob that is crackable offline. If the service account has a weak password, the hash falls. Defend with strong, random service account passwords and managed service accounts.
Code Solution
SolutionRead Only
Ethical test: request TGS for SPN; crack offline with limited, approved rules
