Abstract
Weaknesses
in Kerberos
or Getting Around the Three-Headed Hound
Monica Dralle
The Kerberos authentication system provides a powerful security environment. However, despite it's strengths and popularity, several limitations and weaknesses exist.
This talk addresses some of those limitations. It explores environment issues, replay attacks, and brute-force password guessing. It also addresses problems with ticket scope and the use of Kerberos in multi-user platforms.