Advertisement · 728 × 90

Posts by Tylermcl

Ivanti Community

Hot Zeroday Sunner continues with Ivanti Sentry CVE-2023-38035 affecting a limited number of users forums.ivanti.com/s/article/CVE-2023-38035...

2 years ago 1 1 0 1

Citrix www.mandiant.com/resources/blog/citrix-ze...

2 years ago 0 0 0 0
Post image

The takeaway: The GRU has followed the same five phase disruptive playbook throughout the war. Alternatives have existed, but the GRU has opted for the same tradecraft on repeat. We assess that these choices are calculated adaptations to a wartime operating environment.

2 years ago 4 1 1 0

GRU’s playbook on cyber disruption and infoops

2 years ago 3 0 0 0

Notable Storm-0875 tradecraft
1. Initial Access: Sms phishing + AITM or purchase infostealer logs (bypasses most defenses)
2. Privilege escalation via SIM swapping or call number forwarding global admin’s personal phone
3. Time from initial access to global admin often occurs within hours

2 years ago 4 1 1 0

If you haven’t turned on non sms/push 2FA and are a tech/bpo, retail, or telco org, they will find a weak spot and ruin your summer.

2 years ago 3 0 0 0

US holidays are perfect for tagging attribution on 25k events without getting any cpu usage complaints.

2 years ago 0 0 0 0
Post image

Happy Canada Day! 🇨🇦 Careful out there! 🌪️⛈️

2 years ago 2 0 0 0

Hello world!

2 years ago 2 0 0 0
Advertisement