Top Attack Vectors: July 2021
ID: 7a5db01c-719d-5642-bcf5-a5ee8a89060a
STIX ID: report--7a5db01c-719d-5642-bcf5-a5ee8a89060a
Feed Name: Expel Blog
Expel’s July 2021 SOC report identifies phishing—particularly Business Email Compromise (BEC) against Microsoft O365—as the dominant threat (≈65% of incidents), highlights attacks against cloud identity providers (notably Okta), documents vishing-led remote access scams, and notes commodity malware and a stopped WordPress-driven RAT/ransomware attempt; the report emphasizes user-execution delivery (malicious attachments/macros) and provides practical resilience recommendations such as enabling MFA, disabling legacy protocols, tightening conditional access, blocking unapproved remote-access tools, hardening WordPress, and reducing macro/WSH attack surface.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
