The proof-of-concept exploit code for the Kerberos Bronze Bit attack was published online this week. It allows intruders to bypass authentication and access sensitive network services. Microsoft initially addressed the flaw for Bronze Bit attacks in the November 2020 Patch Tuesday, but some Windows 10 users started reporting it. The attack is a variation of the Golden Ticket attack discovered by Benjamin Delpy. and Silver Ticket attacks to bypass KerberOS authentication. An attacker who infected one system on a network and extracted password hashes can use the hashes to bypass and forge credentials to access other systems on the same network.”]
Source: https://securityaffairs.co/wordpress/112156/hacking/kerberos-bronze-bit-attack.html

