Navigating the SMB Threat Landscape: Key Insights from Huntress’ SMB Threat Report
ID: f7b2d1d4-f7ac-55c4-a94e-a3adc400f2fa
STIX ID: report--f7b2d1d4-f7ac-55c4-a94e-a3adc400f2fa
Feed Name: Huntress Blog
Huntress’ Q3 2023 SMB Threat Report describes a shift toward malware-free intrusions using LOLBins and scripting, widespread abuse of RMM tools for persistence and remote access, escalating identity attacks and BEC in Microsoft 365 (notably malicious inbox rules and unusual logins), and a diversified ransomware ecosystem where LockBit is prominent but many lesser-known strains prevail—emphasizing the need for behavioral detections and identity-centric visibility beyond traditional anti-malware controls.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
