Microsoft DART
@microsoftdart
We are the Microsoft Detection and Response Team. All things #DFIR #IncidentResponse
ID: 1505269467772702720
http://aka.ms/dartblogs 19-03-2022 19:46:30
23 Tweet
2,2K Takipçi
3 Takip Edilen
Microsoft has been tracking Iranian actor PHOSPHORUS’ ransomware sub-group known as DEV-0270, aka Nemesis Kitten. The group is responsible for multiple attacks typically using high-severity vulnerabilities to gain access. TTPs and more in our latest blog: microsoft.com/security/blog/…
If you are in the security research or response field and interested in attending, please submit an application as soon as possible. Applications close January 6, 2023, or when all available passes have been allocated. Full details can be found here: msrc-blog.microsoft.com/2022/12/02/blu…
The Unified Audit Log can help build a full story of a threat actor’s activity in #Office365, but its sheer size and detail can be daunting. Are you equipped to hunt through this forensic artifact effectively? Read our latest blog to find out: techcommunity.microsoft.com/t5/microsoft-s…