← All Lessons
Premium
TechniqueActive Directory
Abusing Unconstrained Delegation
Abusing unconstrained delegation exploits systems configured to store forwarded TGTs from any authenticating user, allowing an attacker who compromises that system to impersonate anyone who connects to it. This lesson explains why unconstrained delegation creates risk, what preconditions matter, what the attacker gains, and how to communicate the risk clearly in interviews, reports, and stakeholder conversations.
Sign in or upgrade to unlock the full premium library.
What you'll learn
- TGT forwarding
- Unconstrained means unrestricted
- TrustedForDelegation flag
- Authentication coercion as an amplifier
- DC machine account TGT → DCSync
- Distinction from constrained delegation
What premium includes
- All 68 lessons: AD techniques, professional skills, each with interview answers and study kits
- Complete study kit for every lesson: quizzes, flashcards, and briefs
- Every learning track with full structured progression
- All 12 attack paths: full compromise walkthroughs for interviews and reports
- New lessons and attack paths added regularly