Cybersecurity

Mitre ATT&CK News

Explore the latest news articles and reports about the Mitre Attack Framework, a curated knowledge base that helps network defenders learn exactly how networks are attacked. Discover everything about it and its place in the world of cybersecurity.

Top news of the week: 12.05.2022.

Cloud computing
.NET framework
Bruce Schneier
Malware
Supply chain
Web 2.0

Mitre Attack

@msftsecurity shared
On May 9, 2022
RT @MsftSecIntel: Human-operated ransomware, a class of attacks driven by expert human intelligence and culminate in intentional business disruption and extortion, have become even more impactful in recent years with the evolution of the cybercrime gig economy: https://t.co/ilcAyyzcz0
Open
Ransomware-as-a-service: Understanding the cybercrime gig economy and how to protect yourself

Ransomware-as-a-service: Understanding the cybercrime gig economy and how to protect yourself

Microsoft coined the term “human-operated ransomware” to clearly define a class of attack driven by expert humane intelligence at every step of the attack chain and culminate in intentional ...

@PatrickCMiller shared
On May 11, 2022
5-Buck DCRat Malware Foretells a Worrying Cyber Future https://t.co/ZFYHlkTXYm
Open
5-Buck DCRat Malware Foretells a Worrying Cyber Future

5-Buck DCRat Malware Foretells a Worrying Cyber Future

The Dark Crystal remote access Trojan (aka DCRat) breaks a few stereotypes, with coding done by a solo developer, using an obscure Web language and offering it at a frighteningly low price.

@markrussinovich shared
On May 9, 2022
Introducing Microsoft Security Experts, a combination of expert-trained ML and human-led services for security defense and response: https://t.co/bDZeezYv7W
Open
Building a safer world together with our partners—introducing Microsoft Security Experts

Building a safer world together with our partners—introducing Microsoft Security Experts

Technology alone is not enough to defend against cybercrime. It’s critical, but it’s the combination of leading technologies, comprehensive threat intelligence, and highly skilled people ...

@CrowdStrike shared
On May 11, 2022
CrowdStrike's Falcon OverWatch proactive threat hunting team uncovered a sophisticated .NET-based post-exploitation framework, dubbed IceApple. The emergence of new IceApple modules over the past year indicates that this framework is actively developing. https://t.co/5gkr6CUL4m
Open
Proactive Threat Hunting Bears Fruit: Falcon OverWatch Detects Novel IceApple Post-Exploitation Framework

Proactive Threat Hunting Bears Fruit: Falcon OverWatch Detects Novel IceApple Post-Exploitation Framework

CrowdStrike's Falcon OverWatch proactive threat hunting uncovered IceApple, a sophisticated post-exploitation framework.

@Secureworks shared
On May 10, 2022
Check your answer: https://t.co/rRPvSf3zxQ Learn more about the hunt: https://t.co/Ep28T182Es
Open
Are You a Cyber Threat Hunter? Join the Secureworks® RSA Scavenger Hunt

Are You a Cyber Threat Hunter? Join the Secureworks® RSA Scavenger Hunt

We are excited to launch the Secureworks® RSA Scavenger Hunt leading up to this year’s conference in San Francisco. Starting May 9 and continuing through June 6

@MalwareJake shared
On May 7, 2022
RT @hal_pomeranz: Too late to find them at WWHF, but check out https://t.co/XUZcyLy6W0 and run their product on five machines for free. You will thank me. https://t.co/d9mkEJ2DfE
Open
Linux Runtime Security

Linux Runtime Security

Spyderbat Linux runtime security protects your dynamic environments by tracking all activities to detect and resolve external attacks, misconfigurations, and insider threats.

@CrowdStrike shared
On May 10, 2022
We are proud to collaborate with MITRE and contribute to the Top ATT&CK Techniques project, creating a powerful tool enabling defenders to build an effective cybersecurity strategy. Read more in this blog post. ⬇️ https://t.co/binap2XXr3
Open
CrowdStrike Partners with Center for Threat-Informed Defense to Reveal Top Attack Techniques Defenders Should Prioritize

CrowdStrike Partners with Center for Threat-Informed Defense to Reveal Top Attack Techniques Defenders Should Prioritize

We are proud to collaborate with MITRE and contribute to the Top ATT&CK Techniques project, creating a powerful tool enabling defenders to build an effective cybersecurity strategy.

@PatrickCMiller shared
On May 11, 2022
Microsoft expands managed security services offerings with new program https://t.co/3qhE5vJkGE
Open
Microsoft expands managed security services offerings with new program

Microsoft expands managed security services offerings with new program

Security Experts allows customers to tap into Microsoft pros for threat hunting, XDR, and modernization.