Heimdal Security Presents its Latest Report on Brute-Force Cyberattacks
ID: dc57a271-f2d6-518d-85e6-65ebf01a5fbd
STIX ID: report--dc57a271-f2d6-518d-85e6-65ebf01a5fbd
Feed Name: Dark Reading
Heimdal's investigation reports an ongoing Russia-linked brute-force campaign (dating back to at least May 2024) targeting high-value corporate and institutional accounts across Europe by abusing Microsoft infrastructure and major ISPs in the Netherlands, Belgium and Russia; attackers use SMBv1 and RDP crawlers and credential stuffing/spraying to compromise administrative accounts, with impacts including data theft, disruption, and potential sabotage, and the report urges stronger cloud security, MFA, audits, and user education.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
