logo

Emulating and Detecting Scattered Spider-like Attacks

ID: 03bf944b-ea60-5f99-9d7f-d0be6be17731

STIX ID: report--03bf944b-ea60-5f99-9d7f-d0be6be17731

Feed Name: Sekoia.com

Threat Score
70/100

Date Published: 2024-07-24

Date Updated: 2026-07-20

...
...

This report demonstrates an AWS-focused adversary-emulation of Scattered Spider–like attacks using Mitigant and Sekoia to map attacker TTPs across the MITRE ATT&CK framework, showcase detectable events (e.g., EnableSerialConsoleAccess, CreateUser, PutBucketReplication), provide detection rules and IOCs, and illustrate how Threat-Informed Defense (CTI + SOC + emulation) improves cloud detection and response.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.