AS-REP Roasting Attack Explained | Real-Life Active Directory Exploit Demo

Mar 19, 2025

What is AS-REP Roasting?

AS-REP Roasting is an attack that exploits misconfigured Active Directory accounts with disabled Kerberos pre-authentication. Attackers can retrieve password hashes and crack them with minimal effort, leading to unauthorized access.

Watch This Real-World Attack Demo

Jon Obst, Director of Research at Netwrix, demonstrates:

  • ️ How attackers identify vulnerable accounts
  • ️ Extracting AS-REP hashes using tools like Impacket
  • ️ Cracking passwords with Hashcat for privilege escalation
  • ️ Lateral movement techniques within an Active Directory environment

How to Prevent AS-REP Roasting

Protect your organization with proactive security controls:

  • ️ Netwrix Threat Prevention to detect and respond to authentication attacks
  • ️ Netwrix Password Policy Enforcer to strengthen password security
  • ️ Netwrix Enterprise Auditor to monitor and mitigate Active Directory misconfiguration

Learn how tools like Netwrix Threat Prevention, Netwrix Password Policy Enforcer, and Netwrix Enterprise Auditor can help you prevent AS-REP Roasting and secure privileged accounts: https://netwrix.com/go/as-rep-roasting-attack-0

#ASREPRoasting #ActiveDirectorySecurity #Kerberos #ADSecurity #Netwrix #CyberSecurity #IdentitySecurity