[hw] hackerswar v3.0
~ p / kerberoast-2026
search ⌘K
dark

Kerberoasting Still Works in 2026

And probably will in 2030. Here is why.

Kerberoasting works because every service account in Active Directory has a Service Principal Name, and any authenticated user can request a service ticket for any SPN.

That sentence has been true since 2014. It is still true. It will be true at the end of this decade.

bash the entire attack
impacket-GetUserSPNs -request \
-dc-ip 10.10.10.10 \
domain.local/lowpriv:Password1
blog.hackerswar.com 7 posts indexed
php 8.3.30 rendered 2.3ms