Kerberoasting: Requesting RC4 Encrypted TGS when AES is Enabled
It is possible to kerberoast a user account with SPN even if the account supports Kerberos AES encryption by requesting an RC4 ecnrypted (instead of AES) TGS which easier to crack.
Execution
Requesting RC4 Encrypted Ticket
References
Last updated