The GetUserSPNs.py script (part of Impacket) is used in Kerberoasting attacks. It requests Service Principal Names (SPNs) for users with associated services, retrieves TGS tickets, and then allows offline cracking of those tickets.
From the CompTIA PenTest+ PT0-003 Study Guide (Chapter 8 – Post-Exploitation):
“Kerberoasting involves requesting service tickets for SPNs, which can then be cracked offline to retrieve service account passwords.”
[Reference: Chapter 8, CompTIA PenTest+ PT0-003 Official Study Guide, ===========]
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit