How to Build a Threat-Informed Defense: Why You Need to Understand Adversaries
ID: 0fa92e88-bc36-5165-9809-d886c20796f4
STIX ID: report--0fa92e88-bc36-5165-9809-d886c20796f4
Feed Name: SOCRadar Blog
This report advocates a threat-informed defense approach and illustrates it with a focused case study on the Akira ransomware RaaS, describing its initial access vectors (including exploitation of CVE-2023-20269 and phishing/credential theft), lateral movement and credential harvesting techniques, rapid exfiltration and ESXi-targeting encryption, double-extortion operations, reported scale and financial impact, associated IoCs, and prioritized mitigations (patching, MFA, backup isolation, EDR behavioral detection, and incident response playbooks).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
