Exploit for Windows Kerberos mutual authentication bypass vulnerability (CVE-2024-20674) leading to remote code execution.
This project is an exploit implementation for CVE-2024-20674, a security vulnerability in Windows Kerberos. It leverages a logic bug in client-side handling of Kerberos User-to-User (U2U) Ticket Granting Ticket Replies (TGT-REP) to bypass mutual authentication. This bypass can be weaponized to spoof a Domain Controller and serve malicious Group Policy Objects (GPOs), ultimately enabling remote control of a target machine.
The exploit focuses on practical weaponization of a published cryptographic protocol implementation flaw, demonstrating how a logic bug can be chained into a full system compromise.
Open-Awesome is built by the community, for the community. Submit a project, suggest an awesome list, or help improve the catalog on GitHub.