Detecting Golden Ticket Attacks In Kerberos Logs
mukul975/Anthropic-Cybersecurity-Skills
Detect Golden Ticket attacks in Active Directory using Splunk and KQL queries against domain controller event logs, looking for Kerberos TGT anomalies such as mismatched encryption types, impossible…
