logo

From MS14-068 to Full Compromise - Step by Step

ID: 131ba578-b9c0-5a2a-bfaf-ea38b4969bcc

STIX ID: report--131ba578-b9c0-5a2a-bfaf-ea38b4969bcc

Feed Name: TrustedSec blog

Threat Score
75/100

Date Published: 2025-03-19

Date Updated: 2026-05-01

...
...

This blog-style report provides a step-by-step penetration-test walkthrough exploiting the MS14-068 Kerberos vulnerability to obtain forged Kerberos tickets and escalate a regular domain user to domain administrator. It details discovery (RIDENUM), exploitation (pykek/ms14-068), ticket usage to access SMB shares, and post-exploitation privilege escalation with Mimikatz and domain join techniques, including all relevant commands and environmental prerequisites (time sync, Kerberos tools, routing/DNS).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.