logo

How Attackers Establish Persistence in Hybrid Environments by Lucie Cardiet

ID: 18f356a9-ab2d-5933-a3b7-4997ec1a045a

STIX ID: report--18f356a9-ab2d-5933-a3b7-4997ec1a045a

Feed Name: Vectra AI Blog

Threat Score
65/100

Date Published: 2026-03-16

Date Updated: 2026-05-01

...
...

This Vectra AI report explains how attackers achieve persistence in modern hybrid networks, outlining common techniques—backdoors and hidden remote access (hVNC), persistent network tunnels, C2 beacons (e.g., Cobalt Strike), token and identity abuse, and living-off-the-land using legitimate admin tools—and highlights why prevention tools often miss these footholds; it recommends behavior-focused detection across network and identity layers to reveal hidden persistent access.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.