Hashtag index for navigation:
#InsiderThreat
#RansomOps
#SupplyChainSecurity
#CTI
#AdversaryTradecraft
#CyberDisinfo
#EDRAbuse
#APT15
Stay informed. Stay unpredictable. Stay ahead.
Thread 7: PurpleHaze
A China-linked APT breached a vendor with access to SentinelOneβs logistics β targeting the supply chain, not the core.
#APT15 #SupplyChainSecurity #AdversaryTradecraft
Thread 6: Nitrogen
One ransomware gang skipped hacking altogether β and licensed security software by impersonating real companies.
#RansomOps #EDRAbuse #AdversaryTradecraft
Thread 4: Recruiters as Sensors
SentinelOne trained recruiters to spot adversary patterns.
Result: hiring became a detection system.
#CTI #InsiderThreat #AdversaryTradecraft
Thread 3: Resume Warfare
DPRK IT workers submitted 1,000+ fake job applications.
Their goal?
Insider access.
#InsiderThreat #APT38 #AdversaryTradecraft
Thread 2: Vendors Are the Target
Security companies arenβt off-limits β theyβre central objectives.
One breach = insight into thousands of environments.
#EDRAbuse #CyberDisinfo #AdversaryTradecraft
π§΅ Hereβs the full recap.
#AdversaryTradecraft #CTI #CyberDisinfo
Hashtags for this thread:
#CTI #InsiderThreat #AdversaryTradecraft #SupplyChainSecurity
Next:
Recap Thread
A summary of this 9-thread series β all the tactics, all the links, all the takeaways.
#CTI #AdversaryTradecraft #SupplyChainSecurity
From hiring to sales to vendor vetting β CTI is everywhere.
π§΅
#CTI #InsiderThreat #AdversaryTradecraft
Hashtags for this thread:
#APT15 #CyberDisinfo #AdversaryTradecraft #CTI
Next:
Threat Intel as the Corporate Nervous System
Why CTI isnβt a backroom team anymore β itβs how companies defend hiring, sales, product, and trust.
#CTI #InsiderThreat #AdversaryTradecraft
This isnβt just espionage. Itβs strategic ambiguity.
π§΅
#APT15 #CyberDisinfo #AdversaryTradecraft
Hashtags for this thread:
#APT15 #SupplyChainSecurity #AdversaryTradecraft #CyberDisinfo
Next:
ShadowPad, ScatterBrain & Attribution Fog
How Chinese APTs hide in shared tools and blended infrastructure β and why that makes disinfo so easy.
#APT15 #CyberDisinfo #AdversaryTradecraft
Hereβs how Chinaβs PurpleHaze threat cluster quietly probed the supply chain.
π§΅
#APT15 #SupplyChainSecurity #AdversaryTradecraft
Hashtags for this thread:
#RansomOps #EDRAbuse #AdversaryTradecraft #CyberDisinfo
Next:
Chinaβs PurpleHaze: When the Target Is Your Logistics Vendor
What happens when the attacker compromises your suppliers instead of your servers.
#SupplyChainSecurity #APT15 #AdversaryTradecraft
Nitrogen: The Ransomware Gang That Buys Its Way In
They didnβt hack an EDR console.
They didnβt bribe an insider.
They posed as a real company β and bought the software.
Nitrogen is changing how ransomware gains access.
π§΅
#RansomOps #EDRAbuse #AdversaryTradecraft
Hashtags for this thread:
#RansomOps #EDRAbuse #AdversaryTradecraft #CyberDisinfo
Ransomware crews are probing, bribing, and buying their way into EDR platforms β before the attack even starts.
π§΅
#RansomOps #EDRAbuse #AdversaryTradecraft
Hashtags for this thread:
#InsiderThreat #CTI #AdversaryTradecraft #CyberDisinfo
Next:
Access for Sale
Ransomware crews arenβt bypassing your security tools β theyβre logging into them.
#EDRAbuse #RansomOps #AdversaryTradecraft
How Recruiters Became Intelligence Sensors
The inbox is the new intrusion vector.
And the people reading resumes? Theyβre part of your threat surface.
Hereβs how one security company turned hiring into early warning.
π§΅
#CTI #InsiderThreat #AdversaryTradecraft
Hashtags for this thread:
#InsiderThreat #APT38 #AdversaryTradecraft #CTI
Next:
How Recruiters Became Intelligence Sensors
How one collaboration turned passive screening into proactive threat detection.
#InsiderThreat #CTI #AdversaryTradecraft
And theyβre getting smarter.
π§΅
#InsiderThreat #APT38 #AdversaryTradecraft
Hashtags for this thread:
#InsiderThreat #EDRAbuse #CyberDisinfo #AdversaryTradecraft
Up next:
Resume Warfare
North Korea isnβt just hacking your infrastructure β itβs applying for jobs.
#InsiderThreat #APT38 #AdversaryTradecraft
π§΅ Why security vendors sit at the center of the modern threat surface.
#AdversaryTradecraft #CyberDisinfo