← All talks

Domain User Dump: Hackers Exploit Organization Weaknesses #shorts

BSides Frankfurt0:271.5K viewsPublished 2026-03Watch on YouTube ↗
About this talk
Organizations struggle to detect a common cyberattack: dumping users off a domain and re-spraying them. Most SIEMs should catch this, but it's surprisingly rare. #Cybersecurity #NetworkSecurity #Infosec #AttackDetection
Show transcript [en]

They do this by dumping net user space/domain to dump all of the users off of the domain. Then they automatically spray every single one of those users. And the vast majority of organizations do not have the ability to successfully detect these types of attacks, which is ridiculous. Uh any SIM with their shot their salt should be able to detect this, but unfortunately it's a little bit rare.