Also be sure to turn on these monitoring policies in #DefenderForCloudApps so you can #CatchTheHacker before they get too deep, whether you switch to #Kerberos or not. #NetworkSegregation is also a great #LayeredDefense method to ensure if one system is compromised the attacker can't use #SMBtraversal to get to all your computers, globally. #EternalBlue source code is still being used to get to #DCs via #Trikbot evolutions, after #Phishing a user with #LocalAdmin privileges, to execute #mimikatz against #ActiveDirectory to steal all the objects. #YesThisHappened
#defenderforcloudapps #catchthehacker #kerberos #networksegregation #layereddefense #smbtraversal #eternalblue #DCS #trikbot #phishing #localadmin #mimikatz #activedirectory #yesthishappened
AxisOfEasy #176: Will anybody who hasn’t been hacked by STARBURST, please raise your hand
#Adrozek #APT29 #FireEye #Orion #Pfizer #Russiagate #SolarWinds #SUNBURST #TrikBot #UNC2452
#unc2452 #trikbot #sunburst #solarwinds #russiagate #pfizer #orion #fireeye #apt29 #adrozek
#AxisOfEasy 176: Anybody Who Hasn’t Been Hacked By STARBURST, Please Raise Your Hand
##AxisOfEasy #Adrozek #APT29 #FireEye #Orion #Pfizer #Russiagate #SolarWinds #SUNBURST #TrikBot #UNC2452
#unc2452 #trikbot #sunburst #solarwinds #russiagate #pfizer #orion #fireeye #apt29 #adrozek #axisofeasy