Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Why Most Organizations Still Can’t Defend against DCShadow

Summary

How DCShadow works: any Windows server can impersonate a domain controller and inject changes into AD's replication stream—bypassing security event logs, with no patch to close the technique.
Published
Collected

original ↗