CISA’s Red Team Exercise Shows Value of Phishing, but Misses the Best Recommendation
ID: 0d12ecd1-3076-59ff-b357-a130bbd03c19
STIX ID: report--0d12ecd1-3076-59ff-b357-a130bbd03c19
Feed Name: KnowBe4 Blog
Threat Score
A CISA red team conducted a prolonged attack simulation against a federal civilian agency: they exploited an unpatched Solaris vulnerability, then used OSINT-driven spear-phishing to deploy an in-memory backdoor, bypass defenses, compromise SCCM and administrative jump servers, maintain months-long undetected persistence, and exfiltrate gigabytes of data—highlighting failures in patching, monitoring, MFA adoption, and user awareness training.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
