Domain Controller

Domain Controller taxonomy generated by the site skill importer.

1 skills
M
detecting-dcsync-attack-in-active-directory

by mukul975

detecting-dcsync-attack-in-active-directory is a threat-hunting skill for spotting DCSync abuse in Active Directory by correlating 4662 events, replication GUIDs, and legitimate DC accounts. Use it to confirm, triage, and document credential-theft activity with Splunk, KQL, and parsing scripts.

Threat Hunting
Favorites 0GitHub 0
Domain Controller