Skip to content

A Collection of Powershell One-Liners and functions that can help Blue

Notifications You must be signed in to change notification settings

MatthewGeneNavarro/BSidesRGV2024

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

35 Commits
 
 
 
 
 
 
 
 

Repository files navigation

BSidesRGV2024

I did a presention on Kerberos attack and how by learning what is normal in the Kerberos protocol allows for defenders to write scripts detection abnormal behavior

Golden Ticket Detection Important Event IDs: 4624: Account Logon 4672: Admin Logon 4678: TGT Request 4769: TGS Request

Kerberoasting Detection Important Event IDs: 4624: Account Logon 4672: Admin Logon 4678: TGT Request 4769: TGS Request

About

A Collection of Powershell One-Liners and functions that can help Blue

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published