#Kerberoasting im Windows Netzwerk - wie man sich schützt
www.borncity.com/blog/2025/11...htt
Active Directory reste un point de pression majeur ! #DCSync, #GoldenTicket, #Kerberoasting, comptes orphelins, tokens #OAuth compromis et surfaces hybrides #AD/#EntraID. #SI. Priorité : #PAM, #MFA, #ZeroTrust & monitoring AD.
cybersecurite-management.fr/actualites/a...
Understanding Kerberoasting: attackers request service tickets, crack them offline to recover service-account passwords and then impersonate accounts, often without admin rights.
Read more: www.blackfog.com/kerberoastin...
#Kerberoasting #InfoSec
Weak Passwords and Kerberoasting Fueled Ascension’s Ransomware Breach
In September 2025 a senator urged the FTC to probe Microsoft after a Kerberoasting breach detected on May 8 2025 that exposed 5.6 million patient records at 140 Ascension hospitals. getnews.me/weak-passwords-and-kerbe... #kerberoasting #ascension
How weak passwords and other failings led to catastrophic breach of Ascension https://arstechni.ca #ActiveDirectory #networkbreaches #kerberoasting #ransomware #Features #Security #Kerberos #Biz&IT
How weak passwords and other failings led to catastrophic breach of Ascension | #windows #netsec #security #kerberoasting #ActiveDirectory | arstechnica.com/security/202...
How weak passwords and other failings led to catastrophic breach of Ascension A deep-dive into Active Directory and how "Kerberoasting" breaks it wide open. Last week, a prominent US senato...
#Biz #& #IT #Features #Security #Active #Directory #kerberoasting […]
[Original post on arstechnica.com]
Breach al MEF di Panama, accuse di negligenza a Microsoft e hack alle lavatrici di Amsterdam: i rischi IoT e i default insicuri dominano la cybersecurity.
#databreach #geopolitica #IoT #kerberoasting #Microsoft #Panama #RC4
www.matricedigitale.it/2025/09/15/p...
#Oh #Kerberoasting
arstechnica.com/security/202...
U.S. sen #RonWyden demanding #FTC do something about #Microsoft already. Says Satya’s crew to blame for some awful #ransomware attacks, via vuln 10+ years old.
#Kerberoasting exploit affects #ActiveDirectory installs not configured to modern specs. In #SBBlogwatch, we wonder where to point fingers:
A U.S. Senator wants to hold Microsoft accountable for building weak cybersecurity mechanisms in Windows that allow it to profit from hacks by selling secondary security services. #Windows #Kerberoasting
Enhance your cybersecurity defenses with a statistical approach to detect Kerberoasting attacks. Learn how to reduce false positives and identify subtle threats. #CyberSecurity #Kerberoasting #ThreatDetection Link: thedailytechfeed.com/advancing-ke...
They frequently generate false positives or miss “low-and-slow” attacks altogether.
www.tsfactory.com/forums/blog/...
#kerberoasting #cybersecurity
🚨Gli ambienti Active Directory sono sempre molto diffusi oggi nelle organizzazioni, anche italiane.
Operazioni come #Kerberoasting trovano strada fertile se non si presta attenzione all’esecuzione di tool come Impacket (molto popolari tra i team IT) e al monitoraggio eventi
🆕 Interesting analysis of how Kerberos can be abused in an Active Directory environment.
#kerberoasting
- Restrict access to tools like Impacket, Rubeus, and targeted Kerberoast;
- Monitor Event ID 4769 for unusual ticket requests.
🔗 www.hackingarticles.in/kerberoastin...
~Varonis~
Kerberoasting remains a common and highly effective technique for attackers to gain credentials and move laterally in Windows environments.
-
IOCs: (None identified)
-
#ActiveDirectory #Kerberoasting #ThreatIntel
3/10 Kerberoasting:
Targets service accounts by cracking Kerberos tickets.
If service accounts have weak passwords, it's a goldmine for attackers.
#Kerberos #ADSecurity #Kerberoasting #password
Broken Windows
Microsoft’s guidance to help mitigate Kerberoasting
|
www.microsoft.com/en-us/securi...
|
#InfoSec #CyberSecurity #Kerberoasting #ActiveDirectory #Microsoft #Server