Q1 2024 Attacker Trends and Mitigations
ID: 0f5f9e1f-53de-5e8f-a984-0a09c55771de
STIX ID: report--0f5f9e1f-53de-5e8f-a984-0a09c55771de
Feed Name: ReliaQuest Blog
ReliaQuest Q1 2024 Threat Spotlight: phishing, drive-by compromises, and exploitation of critical public-facing vulnerabilities were the dominant initial access vectors, with attackers favoring PowerShell and command obfuscation for execution and defense evasion; SocGholish, AsyncRAT, DorkBot, and Gootloader were the most observed malware families, and the report maps these behaviors to MITRE ATT&CK while providing technical controls and logging recommendations to mitigate the risk.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
