Skip to content
SynAc
Term

Win-DDoS

a novel cybersecurity attack technique that weaponizes legitimate, public-facing Windows Domain Controllers (DCs) to form a powerful, stealthy distributed denial-of-service (DDoS) botnet

Senses

Sense 1

a novel cybersecurity attack technique that weaponizes legitimate, public-facing Windows Domain Controllers (DCs) to form a powerful, stealthy distributed denial-of-service (DDoS) botnet

Discovered by SafeBreach researchers in August 2025, it exploits fundamental vulnerabilities in Windows' Remote Procedure Call (RPC) and Lightweight Directory Access Protocol (LDAP) to launch high-impact attacks without requiring credentials, malware installation, or code execution on the target systems

References
  • NICCS (CISA) Cybersecurity VocabularyJan 06, 2026
    NICCS glossary export (CSV)
    https://niccs.cisa.gov/rest/vocab/export-csv
    NICCS is a CISA (DHS) program. Individual glossary entries include a "From" attribution (e.g., CNSSI 4009, NIST SPs, NICE Framework). Treat "From" values as upstream provenance and verify before quoting large portions of text.
    Source: NICCS (CISA) Cybersecurity Vocabulary (niccs.cisa.gov).