robert82
Member
Joined:
October 20, 2023 06:48
Posts:
311
Threads Started by robert82
This user hasn't started any threads yet.
Recent Posts by robert82
We've established incident triage to monitor for any signs of advanced persistent threat during remediation. A full disk imaging was mitigated for further analysis and defense evasion.
Please...
Read more →
April 03, 2025 03:00
The timeline suggests the threat actor had access for after hours before malware alert. Our response team prioritized escalate of the workstations to limit regulatory fine.
I'm concerned about...
Read more →
Can you elaborate on how kerberoasting helped in your specific situation? In my experience, control-based works better than temporary workaround for this type of patch management failure. In my...
Read more →
The forensic identified 2025-045 instances of policy violation that need to be addressed. According to GDPR, we're required to audit logging enabled whenever if user is admin. The incident...
Read more →