Are cybercriminals hacking your systems – or just logging in?
ID: 52b12169-ac8c-5d9b-bb02-10d2c75e02d9
STIX ID: report--52b12169-ac8c-5d9b-bb02-10d2c75e02d9
Feed Name: WeLiveSecurity (ESET Research)
This advisory warns that threat actors increasingly obtain access by stealing credentials, session tokens, and MFA approvals—via phishing, vishing, infostealer malware, brute-force/credential stuffing, third-party breaches, and MFA bypass techniques—citing large-scale impacts such as the ALPHV (BlackCat) attack on Change Healthcare and UNC5537’s Snowflake data theft; it recommends Zero Trust, strong MFA, monitoring, least privilege, employee training, dark-web monitoring, and considering MDR services.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
