본문으로 바로가기

ATT&CK 기법 · Credential Access

Steal or Forge Kerberos Tickets T1558

이 기법을 다룬 REVELARE 한국어 위협 분석 2 · Credential Access

이 기법을 다룬 분석

MITRE 공식 정의

Adversaries may attempt to subvert Kerberos authentication by stealing or forging Kerberos tickets to enable [Pass the Ticket](https://attack.mitre.org/techniques/T1550/003). Kerberos is an authentication protocol widely used in modern Windows domain environments. In Kerberos environments, referred to as “realms”, there are three basic participants: client, service, and Key Distribution Center (KDC).(Citation: ADSecurity Kerberos Ring Decoder) Clients request access to a serv

플랫폼: Linux, macOS, Windows
Steal or Forge Kerberos Tickets (T1558) — ATT&CK 기법 분석 | REVELARE