CRTP - Before Exam

  • Local Administrative Access - Objective 5

  • Abusing certain service (web service for instance, to get reverse shell) - Objective 5

  • Find computers where a domain admin (or specified user/group) has sessions - Objective 7

  • Escalate privileges to Domain Admin using derivative local admin - Objective 7

  • Dump Hashes - Objective 8

  • Golden Tickets - Objective 8

  • Silver Tickets - Objective 9

  • Skeleton key - Objective 10

  • DSRM - Objective 11

  • HUNTING FOR USERS WITH DCSYNC PERMISSIONS - Objective 12

  • Kerberoast attack (Offline cracking of service account passwords) - Objective 14

  • Accounts with Kerberos Preauth disabled - Objective 15

  • set a SPN on the user and obtain a TGS for the user - Objective 16

  • Unconstrained Delegation - Objective 17

  • Constrained Delegation - Objective 18

  • Child to Parent using Trust key - Objective 19

  • Child to Parent using krbtgt hash - Objective 20

  • Across Forest using Trust Tickets - Objective 21

  • Trust Abuse - MSSQL Servers - Database Links - Objective 22

Last updated

Was this helpful?