What is a Pass-the-Ticket (PtT) attack in Active Directory?
-
A
Brute-forcing Kerberos ticket passwords until one matches
-
B
Injecting a captured or forged Kerberos TGT or TGS into the current session to authenticate as that user
-
C
Passing authentication tickets between domain forests via trust relationships
-
D
Replaying captured Kerberos packets to re-authenticate to services