
Tim Parisi
@realparisi
#DFIR #infosec
ID: 506713371
28-02-2012 01:57:31
645 Tweet
625 Followers
322 Following

.CrowdStrike has observed an increase in the targeting of #Telco and #BPO industries from a financially-motivated adversary SCATTERED SPIDER. Mobile carrier networks are targeted, and in some cases SIM swapping has been confirmed. #infosec #dfir crowdstrike.com/blog/analysis-…






Nice work here by Mandiant (part of Google Cloud) to spread the word. I’ll add specifically that vCenter and #ESXi are targeted where the blog mentions encryption of hypervisors. Get jump hosts with separate MFA in between them, and remove AD binding. #scatteredspider mandiant.com/resources/blog…


In addition to the CrowdStrike blog post today on Imperial Kitten - we have released a podcast detailing Iranian cyber operations going back over a decade - crowdstrike.podbean.com/e/iran-s-rise-… or where ever you enjoy podcasts. #CyberSecurity #threatintelligence

.americanair thanks for boarding us all on flight 591 before you confirmed having pilots. “Apologies for any inconvenience” should do the trick. The FAA ✈️

