logo

How CrowdStrike Hunts, Identifies and Defeats Cloud-Focused Threats

ID: 9def7365-b460-52a1-8c68-716cf14111d6

STIX ID: report--9def7365-b460-52a1-8c68-716cf14111d6

Feed Name: Crowdstrike Blog

Threat Score
85/100

Date Published: 2024-09-26

Date Updated: 2026-04-27

Author: Counter Adversary Operations

...
...

The CrowdStrike 2024 Threat Hunting Report highlights a rise in cloud-targeted intrusions, profiling adversaries such as SCATTERED SPIDER and COZY BEAR who use cross-domain techniques to compromise cloud control planes, obtain credentials, and persist in cloud-hosted VMs; it presents a May 2024 case study of a credential-phishing intrusion that leveraged a VM management agent to execute commands and establish persistence, and it recommends cloud threat hunting, configuration standardization, least privilege, and network filtering to detect and mitigate these threats.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.