Golden ticket attacks vs. silver ticket attacks
Keeping The Attackers Out: Golden Tickets, Silver Tickets, And Full Domain Recovery
Active Directory (AD)-based attacks that lead to the compromise of domain controllers (DCs) and the use of golden tickets have been covered extensively.
But what about silver ticket attacks?
During the recovery phase of an incident, focus is primarily placed around the possibility of golden ticket attacks and the associated remediation steps. This isn’t the only way to exploit Kerberos functionality, however; silver ticket attacks, though less spoken of, are equally important in the context of a DC compromise.
Download this white paper to learn about the risks associated with silver ticket attacks and the post-exploitation impact of Kerberos-based attacks, from an incident response perspective.