Chuyển sang chế độ ngoại tuyến với ứng dụng Player FM !
EP156 Living Off the Land and Attacking Critical Infrastructure: Mandiant Incident Deep Dive
Manage episode 396915319 series 2892548
Guest:
Sandra Joyce, VP at Mandiant Intelligence
Topics:
Could you give us a brief overview of what this power disruption incident was about?
This incident involved both Living Off the Land and attacks on operational technology (OT). Could you explain to our audience what these mean and what the attacker did here?
We also saw a wiper used to hide forensics, is that common these days?
Did the attacker risk tipping their hand about upcoming physical attacks? If we’d seen this intrusion earlier, might we have understood the attacker’s next moves?
How did your team establish robust attribution in this case, and how they do it in general? How sure are we, really?
Could you share how this came about and maybe some of the highlights in our relationship helping defend that country?
Resources:
171 tập
Manage episode 396915319 series 2892548
Guest:
Sandra Joyce, VP at Mandiant Intelligence
Topics:
Could you give us a brief overview of what this power disruption incident was about?
This incident involved both Living Off the Land and attacks on operational technology (OT). Could you explain to our audience what these mean and what the attacker did here?
We also saw a wiper used to hide forensics, is that common these days?
Did the attacker risk tipping their hand about upcoming physical attacks? If we’d seen this intrusion earlier, might we have understood the attacker’s next moves?
How did your team establish robust attribution in this case, and how they do it in general? How sure are we, really?
Could you share how this came about and maybe some of the highlights in our relationship helping defend that country?
Resources:
171 tập
Tất cả các tập
×Chào mừng bạn đến với Player FM!
Player FM đang quét trang web để tìm các podcast chất lượng cao cho bạn thưởng thức ngay bây giờ. Đây là ứng dụng podcast tốt nhất và hoạt động trên Android, iPhone và web. Đăng ký để đồng bộ các theo dõi trên tất cả thiết bị.