
Creating PANDA-monium. [Research Saturday]
CyberWire Daily
00:00
The Hands-on Keyboard Activity That Our Threat Hunting Team Discovered
Our threat hunting team uncovered some hands-on keyboard activity that we knew to be malicious. We notified the managed detection response team who took some quick remediation steps by network quarantining the machine. They were clear to us that they had been in the environment for a while, had established some persistence mechanisms and had good familiarity with the overall infrastructure of the customer's environment. The combination of commands and actions that a threat actor performs in an environment typically is an indicator that the user that's performing those actions is not a legitimate user.
Play episode from 03:46
Transcript


