How Attackers Establish Persistence in Hybrid Environments by Lucie Cardiet
ID: 18f356a9-ab2d-5933-a3b7-4997ec1a045a
STIX ID: report--18f356a9-ab2d-5933-a3b7-4997ec1a045a
Feed Name: Vectra AI Blog
Threat Score
This Vectra AI report explains how attackers achieve persistence in modern hybrid networks, outlining common techniques—backdoors and hidden remote access (hVNC), persistent network tunnels, C2 beacons (e.g., Cobalt Strike), token and identity abuse, and living-off-the-land using legitimate admin tools—and highlights why prevention tools often miss these footholds; it recommends behavior-focused detection across network and identity layers to reveal hidden persistent access.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
