An attack that abuses Active Directory's authentication system to forge a fraudulent ticket granting unlimited access to every resource in the domain.
By stealing the hash of the KRBTGT account, which underpins Kerberos authentication, an attacker can forge a ticket equivalent to administrator privileges without going through the legitimate authentication process. Once achieved, it's known as an extremely powerful and dangerous compromise that a simple password change cannot fix.
© 2026 ITBGM