logo

Top Attack Vectors: July 2021

ID: 7a5db01c-719d-5642-bcf5-a5ee8a89060a

STIX ID: report--7a5db01c-719d-5642-bcf5-a5ee8a89060a

Feed Name: Expel Blog

Threat Score
70/100

Date Published: 2021-08-13

Date Updated: 2026-04-27

Author: Jon Hencinski

...
...

Expel’s July 2021 SOC report identifies phishing—particularly Business Email Compromise (BEC) against Microsoft O365—as the dominant threat (≈65% of incidents), highlights attacks against cloud identity providers (notably Okta), documents vishing-led remote access scams, and notes commodity malware and a stopped WordPress-driven RAT/ransomware attempt; the report emphasizes user-execution delivery (malicious attachments/macros) and provides practical resilience recommendations such as enabling MFA, disabling legacy protocols, tightening conditional access, blocking unapproved remote-access tools, hardening WordPress, and reducing macro/WSH attack surface.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.