Skip to content
← LibraryTechnique entry
AD-SAPPHIRECredential Access

Sapphire Ticket

Forge a TGT with valid PAC_REQUESTOR signature so it survives 2022 PAC validation patches.

§ Where this technique fits

AD-SAPPHIRE is catalogued under the Credential Access tactic of the offensive-security kill-chain. It appears in 0 approved dossiers in the registry, typically.