Tom McElroy and Anders Nielsen - 乞讨、借用或偷窃.pdf

编号:185950 PDF 18页 1.55MB 下载积分:VIP专享
下载报告请您先登录!

Tom McElroy and Anders Nielsen - 乞讨、借用或偷窃.pdf

1、Beg,Borrow or StealTom McElroy&Anders NielsenMicrosoft Threat IntelligenceMicrosoft Threat IntelligenceMicrosoft Threat Intelligence Center(MSTIC)Protect Microsoft&our customersNation State&Criminal ActorsMicrosoft Threat IntelligenceWho is Secret Blizzard?The Problem with Initial AccessSecret Blizz

2、ards Initial Access HistorySecret Blizzard vs.Storm-0156Secret Blizzard vs.Storm-1919Secret BlizzardRussian FSBAlso known as:Turla,Snake,UAC-0003Targets:Central Government EntitiesGovernment Foreign AffairsGovernment Defense EntitiesNGOsMulti-Lateral ForumsUkrainian Military InterestsObjectives:Long

3、-term persistent network accessIntelligence collectionSupport to military operationsActivity includes:Multiple breaches into MFAsMicrosoft Threat IntelligenceThe Problem with Initial AccessIts hardPhishing&Valid CredentialsExploitation is harder,and when its easy,you have competitionIt takes timeBui

4、lding access can be slow18%success rate when Phishing(Trend Micro,2024)Novel Secret Blizzard Initial Access2008:Agent.btzUSB drive deployedUsed autoruns featureTargeted US DOD2010:Strategic Web InjectsWatering hole campaignHijacking webshellinstallationsWidespread infection2018:MosquitoTrojanized fl

5、ash installerA utilizedDiplomatic targets2019:OilRigHijacking Hazel Sandstorm operationsPoison Frog C2 takeoverNautilus/Dark NeuronActive scanning for shells2022:AndromedaRegistered old Andromeda domainsExisting USB infectionsWidespread deployment of Kopiluwak&KapushkaSpearphishingPassword SprayDevi

6、ce ExploitationEnduring ActivityStorm-0156Pakistan NexusAlso known as:APT36,Mythic Leopard,C-MajorTargets:Indian Government EntitiesAfghanistan Government EntitiesObjectives:Intelligence collectionMicrosoft Threat IntelligenceStorm-0156November 2022Initial access vector is unknownSecret Blizzard Acc

友情提示

1、下载报告失败解决办法
2、PDF文件下载后,可能会被浏览器默认打开,此种情况可以点击浏览器菜单,保存网页到桌面,就可以正常下载了。
3、本站不支持迅雷下载,请使用电脑自带的IE浏览器,或者360浏览器、谷歌浏览器下载即可。
4、本站报告下载后的文档和图纸-无水印,预览文档经过压缩,下载后原文更清晰。

本文(Tom McElroy and Anders Nielsen - 乞讨、借用或偷窃.pdf)为本站 (芦苇) 主动上传,三个皮匠报告文库仅提供信息存储空间,仅对用户上传内容的表现方式做保护处理,对上载内容本身不做任何修改或编辑。 若此文所含内容侵犯了您的版权或隐私,请立即通知三个皮匠报告文库(点击联系客服),我们立即给予删除!

温馨提示:如果因为网速或其他原因下载失败请重新下载,重复下载不扣分。
客服
商务合作
小程序
服务号
折叠