marthamoran
Moderator
Joined:
October 18, 2023 21:45
Posts:
138
Threads Started by marthamoran
This user hasn't started any threads yet.
Recent Posts by marthamoran
This malware variant is a modified version of Agent Tesla, using DNS tunneling for initial access.
Read more →
In my experience, defense-in-depth works better than manual review for this type of insufficient logging. The C2 infrastructure leverages DGA domains to evade SIEM controls. The C2...
Read more →
Initial triage indicates that A-12 systems were compromised through social engineering. We've established log review to monitor for any signs of hacktivist operation during remediation. We've...
Read more →