Threat Vector by Unit 42

Exposing Muddled Libra's meticulous tactics with Incident Responder Stephanie Regan

6 min · 20 de oct de 2023
Portada del episodio Exposing Muddled Libra's meticulous tactics with Incident Responder Stephanie Regan

Descripción

Threat Vector | Ep 3: In this episode, join host David Moulton as he speaks with Stephanie Regan, a senior consultant at Unit 42. Stephanie, with a background in law enforcement, specializes in compromise assessment and incident response. Discover her insights into combating the Muddled Libra threat group and similar adversaries. Stephanie highlights the crucial role of reconnaissance in investigations and the importance of strong multi-factor authentication (MFA) to counter phishing and social engineering attacks. She delves into techniques like domain typo squatting and shares how domain monitoring can thwart attackers. Learn how Unit 42 assists clients in recovering from attacks, especially those by Muddled Libra. Stephanie emphasizes rapid response and coordination, including using out-of-band communications to outmaneuver threat actors. You can learn more about Muddled Libra at https://unit42.paloaltonetworks.com/muddled-libra/ where Kristopher was the lead author for the Threat Group Assessment: Muddled Libra. Please share your thoughts with us for future Threat Vector segments by taking our ⁠brief survey⁠ [https://www.surveymonkey.com/r/U42_TV_s]. To learn what is top of mind each month from the experts at Unit 42 sign up for their ⁠Threat Intel Bulletin⁠ [https://start.paloaltonetworks.com/unit42-threat-intel-bulletin.html].  Join the conversation on our social media channels: * Website: ⁠https://www.paloaltonetworks.com/unit42⁠ [https://www.paloaltonetworks.com/unit42] * Threat Research: ⁠https://unit42.paloaltonetworks.com/⁠ [https://unit42.paloaltonetworks.com/] * Facebook: ⁠https://www.facebook.com/LifeatPaloAltoNetworks/⁠ [https://www.facebook.com/LifeatPaloAltoNetworks/] * LinkedIn: ⁠https://www.linkedin.com/company/unit42/⁠ [https://www.linkedin.com/company/unit42/] * YouTube: ⁠@PaloAltoNetworksUnit42⁠ [https://www.youtube.com/channel/UCvJQO11qoCHYwZ4Ah4Jf-Tw] * Twitter: ⁠https://twitter.com/PaloAltoNtwks⁠ [https://twitter.com/PaloAltoNtwks] About Threat Vector Unit 42 Threat Vector is the compass in the world of cyberthreats. Hear about Unit 42’s unique threat intelligence insights, new threat actor TTPs, real-world case studies, and learn how the team works together to discover these threats. Unit 42 will equip listeners with the knowledge and insight to proactively prepare and stay ahead in the ever-evolving threat landscape.

Comentarios

0

Sé la primera persona en comentar

¡Regístrate ahora y únete a la comunidad de Threat Vector by Unit 42!

Empezar

2 meses por 1 €

Después 4,99 € / mes · Cancela cuando quieras.

  • Podcasts exclusivos
  • 20 horas de audiolibros / mes
  • Podcast gratuitos

Todos los episodios

11 episodios

Portada del episodio Decoding Cyber Adversaries: Unveiling Intent and Behavior in the World of Threat Hunting with Madeline Sedgwick

Decoding Cyber Adversaries: Unveiling Intent and Behavior in the World of Threat Hunting with Madeline Sedgwick

In this episode of Threat Vector, I had an engaging conversation with Madeline Sedgwick about the skills and methods necessary for understanding threat actor intent and behaviors. Madeline, a senior cyber research engineer and threat analyst, shared insights into how analyzing adversary behavior helps in anticipating threats and avoiding guesswork. We discussed the value of understanding both system dynamics and human behavior in cybersecurity, emphasizing that cyber adversaries are limited by the same laws of internet physics. Stay tuned to gain valuable insights into the evolving threat hunting and deterrence landscape. Join the conversation on our social media channels: Website: ⁠⁠⁠⁠https://www.paloaltonetworks.com/unit42⁠⁠⁠⁠ [https://www.paloaltonetworks.com/unit42] Threat Research: ⁠⁠⁠⁠https://unit42.paloaltonetworks.com/⁠⁠⁠⁠ [https://unit42.paloaltonetworks.com/] Facebook: ⁠⁠⁠⁠https://www.facebook.com/LifeatPaloAltoNetworks/⁠⁠⁠⁠ [https://www.facebook.com/LifeatPaloAltoNetworks/] LinkedIn: ⁠⁠⁠⁠https://www.linkedin.com/company/unit42/⁠⁠⁠⁠ [https://www.linkedin.com/company/unit42/] YouTube: ⁠⁠⁠⁠@PaloAltoNetworksUnit42⁠⁠⁠⁠ [https://www.youtube.com/channel/UCvJQO11qoCHYwZ4Ah4Jf-Tw] Twitter: ⁠⁠⁠⁠https://twitter.com/PaloAltoNtwks⁠⁠⁠⁠ [https://twitter.com/PaloAltoNtwks] About Threat Vector Unit 42 Threat Vector is the compass in the world of cyberthreats. Hear about Unit 42’s unique threat intelligence insights, new threat actor TTPs, real-world case studies, and learn how the team works together to discover these threats. Unit 42 will equip listeners with the knowledge and insight to proactively prepare and stay ahead in the ever-evolving threat landscape.

14 de dic de 20235 min
Portada del episodio Threat Intelligence Treasure Hunt with Jonathan Huebner

Threat Intelligence Treasure Hunt with Jonathan Huebner

In this episode of Threat Vector, host David Moulton and guest John Huebner, an XSIAM Consultant at Palo Alto Networks, delve into the intricacies of managing threat intelligence feeds in cybersecurity. They discuss the challenges organizations face in sifting valuable intelligence from the noise, emphasizing the importance of risk assessments in guiding the selection and tuning of these feeds. John shares strategies for refining signal-to-noise ratios and the risks of neglecting feed updates, underlining the necessity of continuous management and adaptation in threat intelligence. The conversation highlights the dynamic nature of cyber threats and the critical role of proactive, tailored cybersecurity strategies. Join the conversation on our social media channels: * Website: ⁠⁠⁠⁠https://www.paloaltonetworks.com/unit42⁠⁠⁠⁠ [https://www.paloaltonetworks.com/unit42] * Threat Research: ⁠⁠⁠⁠https://unit42.paloaltonetworks.com/⁠⁠⁠⁠ [https://unit42.paloaltonetworks.com/] * Facebook: ⁠⁠⁠⁠https://www.facebook.com/LifeatPaloAltoNetworks/⁠⁠⁠⁠ [https://www.facebook.com/LifeatPaloAltoNetworks/] * LinkedIn: ⁠⁠⁠⁠https://www.linkedin.com/company/unit42/⁠⁠⁠⁠ [https://www.linkedin.com/company/unit42/] * YouTube: ⁠⁠⁠⁠@PaloAltoNetworksUnit42⁠⁠⁠⁠ [https://www.youtube.com/channel/UCvJQO11qoCHYwZ4Ah4Jf-Tw] * Twitter: ⁠⁠⁠⁠https://twitter.com/PaloAltoNtwks⁠⁠⁠⁠ [https://twitter.com/PaloAltoNtwks] About Threat Vector Unit 42 Threat Vector is the compass in the world of cyberthreats. Hear about Unit 42’s unique threat intelligence insights, new threat actor TTPs, real-world case studies, and learn how the team works together to discover these threats. Unit 42 will equip listeners with the knowledge and insight to proactively prepare and stay ahead in the ever-evolving threat landscape.

30 de nov de 20236 min
Portada del episodio From Bytes to Bait: Navigating Phishing, Smishing, and Vishing with Sama Manchanda

From Bytes to Bait: Navigating Phishing, Smishing, and Vishing with Sama Manchanda

Join host David Moulton and cybersecurity expert Sama Manchanda in this enlightening episode of Threat Vector. Sama, a consultant with Unit 42, shares her unexpected journey into the world of cybersecurity, reflecting on how an elective course transformed her career trajectory. The conversation delves into the dynamic and fast-evolving nature of cybersecurity, underscoring the constant emergence of new threats and trends. Sama provides an in-depth analysis of various social engineering tactics like phishing, vishing, and smishing, illuminating how attackers craft these deceptions to target individuals and organizations. She underscores the importance of detailed reconnaissance and tailored strategies in executing these attacks, offering insights into the meticulous planning that goes into such exploits. Furthermore, the podcast explores the defensive side of cybersecurity. Sama emphasizes the crucial role of awareness, training, and fostering a security-conscious culture within organizations. She discusses the significance of reporting and addressing security breaches promptly to mitigate potential damages. This episode is a must-listen for anyone interested in understanding the intricacies of cybersecurity, from the perspective of both attackers and defenders. Stay secure and vigilant with these expert insights into the ever-evolving landscape of digital threats. Please share your thoughts with us for future Threat Vector segments by taking our ⁠⁠⁠brief survey⁠⁠⁠ [https://www.surveymonkey.com/r/U42_TV_s]. To learn what is top of mind each month from the experts at Unit 42 sign up for their ⁠⁠⁠Threat Intel Bulletin⁠⁠⁠ [https://start.paloaltonetworks.com/unit42-threat-intel-bulletin.html].  Join the conversation on our social media channels: * Website: ⁠⁠⁠https://www.paloaltonetworks.com/unit42⁠⁠⁠ [https://www.paloaltonetworks.com/unit42] * Threat Research: ⁠⁠⁠https://unit42.paloaltonetworks.com/⁠⁠⁠ [https://unit42.paloaltonetworks.com/] * Facebook: ⁠⁠⁠https://www.facebook.com/LifeatPaloAltoNetworks/⁠⁠⁠ [https://www.facebook.com/LifeatPaloAltoNetworks/] * LinkedIn: ⁠⁠⁠https://www.linkedin.com/company/unit42/⁠⁠⁠ [https://www.linkedin.com/company/unit42/] * YouTube: ⁠⁠⁠@PaloAltoNetworksUnit42⁠⁠⁠ [https://www.youtube.com/channel/UCvJQO11qoCHYwZ4Ah4Jf-Tw] * Twitter: ⁠⁠⁠https://twitter.com/PaloAltoNtwks⁠⁠⁠ [https://twitter.com/PaloAltoNtwks] About Threat Vector Unit 42 Threat Vector is the compass in the world of cyberthreats. Hear about Unit 42’s unique threat intelligence insights, new threat actor TTPs, real-world case studies, and learn how the team works together to discover these threats. Unit 42 will equip listeners with the knowledge and insight to proactively prepare and stay ahead in the ever-evolving threat landscape.

17 de nov de 20236 min
Portada del episodio Cyber Threats and the Hidden 20%: A Deep Dive into the Attack Surface with Matt Kraning

Cyber Threats and the Hidden 20%: A Deep Dive into the Attack Surface with Matt Kraning

In the ever-evolving world of cybersecurity, it's crucial to stay ahead of emerging threats. Join David Moulton, Director of Thought Leadership for Unit 42, in a riveting conversation with Matt Kraning, CTO of the Cortex Xpanse Team, as they dive into the latest Attack Surface Threat Report [https://www.paloaltonetworks.com/resources/research/2023-unit-42-attack-surface-threat-report]. This podcast episode unveils the startling fact that 20% of the cloud changes every month, leaving organizations vulnerable to unforeseen risks. Matt's team has the remarkable ability to scan the entire internet, uncovering weaknesses and vulnerabilities that plague organizations. They shed light on the most worrisome problems facing large organizations in today's digital landscape. Please share your thoughts with us for future Threat Vector segments by taking our ⁠⁠brief survey⁠⁠ [https://www.surveymonkey.com/r/U42_TV_s]. To learn what is top of mind each month from the experts at Unit 42 sign up for their ⁠⁠Threat Intel Bulletin⁠⁠ [https://start.paloaltonetworks.com/unit42-threat-intel-bulletin.html].  Join the conversation on our social media channels: * Website: ⁠⁠https://www.paloaltonetworks.com/unit42⁠⁠ [https://www.paloaltonetworks.com/unit42] * Threat Research: ⁠⁠https://unit42.paloaltonetworks.com/⁠⁠ [https://unit42.paloaltonetworks.com/] * Facebook: ⁠⁠https://www.facebook.com/LifeatPaloAltoNetworks/⁠⁠ [https://www.facebook.com/LifeatPaloAltoNetworks/] * LinkedIn: ⁠⁠https://www.linkedin.com/company/unit42/⁠⁠ [https://www.linkedin.com/company/unit42/] * YouTube: ⁠⁠@PaloAltoNetworksUnit42⁠⁠ [https://www.youtube.com/channel/UCvJQO11qoCHYwZ4Ah4Jf-Tw] * Twitter: ⁠⁠https://twitter.com/PaloAltoNtwks⁠⁠ [https://twitter.com/PaloAltoNtwks] About Threat Vector Unit 42 Threat Vector is the compass in the world of cyberthreats. Hear about Unit 42’s unique threat intelligence insights, new threat actor TTPs, real-world case studies, and learn how the team works together to discover these threats. Unit 42 will equip listeners with the knowledge and insight to proactively prepare and stay ahead in the ever-evolving threat landscape.

2 de nov de 20237 min
Portada del episodio Exposing Muddled Libra's meticulous tactics with Incident Responder Stephanie Regan

Exposing Muddled Libra's meticulous tactics with Incident Responder Stephanie Regan

Threat Vector | Ep 3: In this episode, join host David Moulton as he speaks with Stephanie Regan, a senior consultant at Unit 42. Stephanie, with a background in law enforcement, specializes in compromise assessment and incident response. Discover her insights into combating the Muddled Libra threat group and similar adversaries. Stephanie highlights the crucial role of reconnaissance in investigations and the importance of strong multi-factor authentication (MFA) to counter phishing and social engineering attacks. She delves into techniques like domain typo squatting and shares how domain monitoring can thwart attackers. Learn how Unit 42 assists clients in recovering from attacks, especially those by Muddled Libra. Stephanie emphasizes rapid response and coordination, including using out-of-band communications to outmaneuver threat actors. You can learn more about Muddled Libra at https://unit42.paloaltonetworks.com/muddled-libra/ where Kristopher was the lead author for the Threat Group Assessment: Muddled Libra. Please share your thoughts with us for future Threat Vector segments by taking our ⁠brief survey⁠ [https://www.surveymonkey.com/r/U42_TV_s]. To learn what is top of mind each month from the experts at Unit 42 sign up for their ⁠Threat Intel Bulletin⁠ [https://start.paloaltonetworks.com/unit42-threat-intel-bulletin.html].  Join the conversation on our social media channels: * Website: ⁠https://www.paloaltonetworks.com/unit42⁠ [https://www.paloaltonetworks.com/unit42] * Threat Research: ⁠https://unit42.paloaltonetworks.com/⁠ [https://unit42.paloaltonetworks.com/] * Facebook: ⁠https://www.facebook.com/LifeatPaloAltoNetworks/⁠ [https://www.facebook.com/LifeatPaloAltoNetworks/] * LinkedIn: ⁠https://www.linkedin.com/company/unit42/⁠ [https://www.linkedin.com/company/unit42/] * YouTube: ⁠@PaloAltoNetworksUnit42⁠ [https://www.youtube.com/channel/UCvJQO11qoCHYwZ4Ah4Jf-Tw] * Twitter: ⁠https://twitter.com/PaloAltoNtwks⁠ [https://twitter.com/PaloAltoNtwks] About Threat Vector Unit 42 Threat Vector is the compass in the world of cyberthreats. Hear about Unit 42’s unique threat intelligence insights, new threat actor TTPs, real-world case studies, and learn how the team works together to discover these threats. Unit 42 will equip listeners with the knowledge and insight to proactively prepare and stay ahead in the ever-evolving threat landscape.

20 de oct de 20236 min