Webinar Description
Key Takeaways
- Focus on the evolving tactics of sensitive data exfiltration
- Exploration of multiple exfiltration channels, including cloud storage and public file hosting
- Discussion of detection opportunities for defenders
- Industry insights from SCYTHE experts Trey Bilbrey and Tyler Casey
Threat Thursday LIVE returns with a timely exploration of protected data exfiltration, a challenge that continues to test security teams across industries. As organizations rely more heavily on cloud infrastructure and distributed workforces, the risk of sensitive data leaving the environment through unconventional channels has never been more pressing.
Understanding Modern Data Exfiltration
Data exfiltration remains a primary objective for many threat actors. This session examines how attackers leverage a variety of methods to move protected information out of secure environments. Techniques such as LOLBAS (Living Off the Land Binaries and Scripts) abuse, command-and-control (C2) exfiltration, and the use of public file hosting platforms have become increasingly common. Cloud storage services, including AWS, present additional vectors that require careful monitoring and defense.
Detection Opportunities and Defensive Strategies
Identifying exfiltration attempts is a complex task, especially as attackers blend in with legitimate traffic and exploit trusted services. The event highlights practical detection points along each exfiltration path, offering actionable insights for defenders seeking to strengthen their monitoring and response capabilities. Understanding where visibility gaps exist can make the difference between a contained incident and a damaging breach.
Expert Perspectives
SCYTHE’s Trey Bilbrey and Tyler Casey bring hands-on experience to the discussion, sharing real-world examples and operational challenges faced by security teams. Their perspectives help contextualize the technical details within broader industry trends, making the session valuable for professionals responsible for safeguarding sensitive data in dynamic environments.

