How Attackers Move Through Hybrid Networks After the Initial Breach by Lucie Cardiet
ID: 1cc341f6-a236-552f-83cb-cbf4461740d1
STIX ID: report--1cc341f6-a236-552f-83cb-cbf4461740d1
Feed Name: Vectra AI Blog
## Executive summary This document explains how attackers expand control inside hybrid environments through lateral movement—covering reconnaissance, credential theft, remote execution (PsExec, RDP, SMB), and pivoting using tools like BloodHound, Mimikatz, Cobalt Strike and Brute Ratel. It emphasizes that lateral movement often mimics legitimate administrative activity, challenges traditional perimeter and endpoint defenses, and recommends detection based on correlating identity and network behavior (highlighting the Vectra AI platform).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
