techhub.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
A hub primarily for passionate technologists, but everyone is welcome

Administered by:

Server stats:

4.8K
active users

#mandiant

0 posts0 participants0 posts today

Google Cloud (ex. Mandiant) recently published a rather comprehensive breakdown of defenses against the threat cluster commonly known as Scattered Spider (UNC3944).

cloud.google.com/blog/topics/t

I can't help but feel that this report is somewhat of a deviation from many of previous Mandiant articles as it's almost entirely a list of bullets about how to defend against UNC3944.

Sure that's exactly what the article is named, but still feels... off. As if an LLM has had a chance to review/read source data and then produce a categorized list of defensive actions to take. Hopefully I'm just angry for no reason about the potential LLM-abuse.

There's usually so much more data and details in their "normal" incident styled reporting. But this one... has none of that but instead a whole bunch of recommendations that are ... well, very comprehensive and not prioritized.

I'm torn.

#ThreatIntel #Cybersecurity #Mandiant @infosec

Google Cloud BlogDefending Against UNC3944: Cybercrime Hardening Guidance from the Frontlines | Google Cloud BlogProactive hardening recommendations to defend against UNC3944, aka Scattered Spider, a financially-motivated threat group.

Laut einem aktuellen #Mandiant-Report ist die gezielte #Infiltration durch IT-Mitarbeiter aus #Nordkorea kein ausschließlich US-amerikanisches Problem. Im Bericht werden Beispiele aus Deutschland, Großbritannien, Serbien und Portugal genannt. Ziele der Cyberkriminellen sind zum einen Lohnzahlungen für das nordkoreanische Raketenprogramm, zum anderen #Spionage, das Einschleusen von Schadsoftware in Unternehmensnetze und Datenerpressung:

cybernews.com/cybercrime/north #cybersecurity #cybercrime