New Research: Detecting DCShadow on Rogue Hosts
semperis.com | blog | #active-directory | #detection | #research | #mimikatz | #persistence | #dcshadow
Summary
Semperis research on spotting DCShadow—the Mimikatz technique that impersonates a domain controller to inject stealthy changes into AD—moves from 'how' to 'from where', helping identify the rogue hosts used for hidden persistence.
- Published
- Collected
Skip to content