NetExec
NetExec copied to clipboard
Option to save the kerberos tickets when doing RBCD
An option to save the kerberos tickets that are created during a successful RBCD attack would be great.
Been running into weird issues with Impacket on a client, and getting a weird DRSUAPI error (even though the host is not a DC when i try to dump it with secretsdump). Used nxc for RBCD and it worked just fine, but --sam and --lsa are blocked by SentinelOne. So having the ability to save the kerberos tickets would be awesome so we can use it in other tools to try and bypass the EDR blocks.
Thanks for the proposal! Maybe we could use the --generate-tgt arg to dump TGTs/STs in these cases