May - Monthly Threat Pulse Review

Summary On a monthly basis, NCC Group’s Threat Intelligence Team researches and identifies prolific threats in the landscape, from new infostealer malware to widespread campaigns conducted by nation states or Organised Crime Groups (OCGs) for threat hunts on our SOC customer’s infrastructure.

THIS MONTH’S THREAT HUNT – ICEDID & DAGON LOCKER SECTION 04

This allows us to leverage IoC-driven threat intelligence to fuel proactive detection on our customer’s environments and subsequently remediate the threat. These IoC’s are queried against our EDR, SIEM and Network Monitoring clients, and this past month our focus was a phishing campaign which resulted in the deployment of IcedID and, eventually, Dagon Locker. The Results On a monthly basis, NCC Group’s Threat Intelligence Team researches and identifies prolific threats in the landscape, from new infostealer malware to widespread campaigns conducted by nation states or Organised Crime Groups (OCGs) for threat hunts on our SOC customer’s infrastructure. The full insights provided by our Threat Hunt are covered in our Premium Threat Pulse. This is available to Managed Service clients and those that purchase our Intelligence Subscription Service. Our Threat Hunt capabilities are available through our Managed Services offerings including MDR, MXDR and XDR SOC services. Get in touch with our teams to give your organisation the reassurance and insights provided by our proactive intelligence-led security services.

This allows us to leverage IoC-driven threat intelligence to fuel proactive detection on our customer’s environments and subsequently remediate the threat. These IoC’s are queried against our EDR, SIEM and Network Monitoring clients, and this past month our focus was a phishing campaign which resulted in the deployment of IcedID and, eventually, Dagon Locker.

10

11

Made with FlippingBook flipbook maker