Kerberos, overpass the hash AS_REQ?
So based on my understanding in the pre-auth AS_REQ, the user encrypts the timestamp and sends it to the KDC. If the KDC can decrypt the timestamp then it provides the user a TGT encrypted using the KRBGT and a session key that’s encrypted.
Given kerberos is AES and RC4 (deprecated), when you do an overpass the hash attack how is the AS_REQ timestamp encrypted using an NT hash / how is the timestamp encryption derived from the users clear text password?
submitted by /u/thehunter699
[link] [comments]