Gold Tick Atta Kerb Logs

Detect Golden Ticket attacks in Active Directory by analyzing Kerberos TGT anomalies including mismatched encryption types, impossible ticket lifetimes, non-existent accounts, and forged PAC signatures in domain controller event logs.

undermybelt Updated

File contents

undermybelt/hermes-skills/tree/main/skills/red-teaming/anthropic-cybersecurity-skills/skills/gold-tick-atta-kerb-logs commit 68d44bf704

Frequently asked questions

npx skillmds@latest add undermybelt/gold-tick-atta-kerb-logs