

Orpheus は、Impacket の GetUserSPNs.py と kerberosv5.py の修正版のラッパーであり、Kerberoasting のための KDC オプション (チケットオプション) と暗号化タイプを変更します。
補足: Orpheus は、三つ頭の犬ケルベロスをかいくぐってハーデスに入ることができたギリシャ神話の神にちなんで名付けられました。
最新バージョンの Impacket をインストールする必要があります。これは 0.10.0 リリース でテストされました。その後、
git clone https://github.com/trustedsec/orpheus.git
cd orpheus
python3 orpheus.py
コマンドの一覧を表示するには help と入力します。KDC オプションを変更するには、オプションの番号を入力して Enter を押します。
Commands:
0 to 31 Toggles the specific KDC Option flag.
hex <value> Sets KDC Options from a hexadecimal value.
cred <value> Sets the GetUserSPNs.py credential parameter.
dcip <value> Sets the GetUserSPNs.py domain IP parameter.
file <value> Sets the GetUserSPNs.py filename parameter.
enc Toggles the encryption type from 23 (RC4) to 18 (AES-256).
sleep Set the time to wait before requesting each TGS.
jitter Set the Jitter to avoid waiting a constant sleep time between each TGS request.
command Show the GetUserSPNs.py command with specified options.
run Runs GetUserSPNs.py with the selected options.
clear Clears the screen and displays the options.
exit Exits the script.
YouTube でビデオをご覧ください。
TrustedSec でブログ記事をご覧ください。