Back to Metasploit
GSoC 2026

CertificateTrace and KerberosTicketTrace Support

This proposal aims to improve observability for Kerberos- and certificate-based authentication workflows in Metasploit. At present, operators often need to interrupt module execution, export authentication artifacts such as .ccache, .kirbi, .pem, or .pfx, and analyze them with external tools in order to understand failures, inspect identities, or validate exploitation steps. This project introduces two opt-in tracing facilities, KerberosTicketTrace and CertificateTrace, together with a reusable X.509 inspection backend to surface protocol and artifact metadata during module execution without changing default Metasploit behavior.

Project details

Contributor

Mingqing Mu

Mentors

Not available

Technologies

Not listed in the archive