BrandPost: Combine XDR with Human Threat Hunters to Help Halt Cyber Attacks

2 years ago 93
BOOK THIS SPACE FOR AD
ARTICLE AD

30. June 2021

This article has been indexed from CSO Online

The last several months have seen many organizations targeted in attacks that utilize on-premises versions of Microsoft Exchange Server and exploit what’s known as the ProxyLogon vulnerability.

In one recent incident, attackers moved laterally through the network and stole account credentials and compromised domain controllers, among other things.

“They found their way into the network through an exposed RDP (Remote Desktop Protocol) interface,” said Dan Schiappa, Sophos Chief Product Officer. “They used stolen credentials to log on to an RDP session, then used vulnerabilities to do credential dumps and moved around the environment. That’s a common chain of events for ransomware attackers to undertake these days.”

To read this article in full, please click here

Read the original article: BrandPost: Combine XDR with Human Threat Hunters to Help Halt Cyber Attacks

Read Entire Article