Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

DCSync Attack Explained

Summary

DCSync attackers impersonate a domain controller to pull password hashes from a DC via the DRS protocol—no code runs on it, and audit trails are bypassed. Covers Purple Knight detection and defense.
Published
Collected

original ↗