Edmund Brumaghin joins Hazel to discuss how threat actors (including state sponsored attackers), are increasingly compartmentalizing their attacks i.e they're bringing in specialist skillsets from other groups to handle different aspects of the attack chain. Edmund discusses why this is happening, and the challenges this poses for defenders when it comes to attribution and reporting. He then discusses several solutions which seek to evolve traditional threat modelling, and help provide clarity to defenders.
More details can be found in this blog https://blog.talosintelligence.com/compartmentalized-threat-modeling/
If you're interested in our other blog on initial access groups, that can be found at https://blog.talosintelligence.com/redefining-initial-access-brokers/
Fler avsnitt av Talos Takes
Visa alla avsnitt av Talos TakesTalos Takes med Cisco Talos finns tillgänglig på flera plattformar. Informationen på denna sida kommer från offentliga podd-flöden.
