Kerberoasting is one of the stealthiest ways to escalate privileges inside Active Directory!
In this episode of Learn with HTB, our red teaming expert, @PinkDraconian, breaks it down from the fundamentals to a full end-to-end attack demo.
You will see how Kerberos authentication works, how attackers request and harvest service tickets, how those tickets get cracked offline, and why threat actors like Akira have used this technique in real campaigns. We also walk through a practical demo on the HTB Active machine using tools such as GetUserSPNs, Hashcat, and Rubeus.
This video is designed to help both red teamers and defenders understand the power and the risks of Kerberoasting, along with how CTEM and continuous human-led training can help organizations stay ahead.
Chapters:
0:00 Introduction
1:30 What is Kerberoasting
4:11 Requirements
4:55 Solving the Active Machine
Don't forget our giveaway! Comment in the comments below the hidden flag to win a Silver Annual subscription 🏆
👉 Continue your learning journey
Want to know how to spot a Kerberoasting attack as a blue teamer? Watch our latest walkthrough: • Threat Watch: Spotting Kerberoasting from ...
Explore HTB’s threat intelligence blogs: https://bit.ly/49Jwyc5
HTB Threat Range provides live-fire cyber defense simulations designed to assess and elevate SOC and DFIR team readiness. Deliver measurable performance improvements through realistic, gamified attack scenarios that strengthen detection, response, and operational resilience. Contact our team for a demo: https://bit.ly/4pnWA9i
#kerberoasting #hackthebox #cybersecurity #ethicalhacking #activedirectory #redteam #blueteam #pentesting