
Creating PANDA-monium. [Research Saturday]
CyberWire Daily
00:00
JSP Compilation and the Threat Actor
We reported in our blog that the malicious activity was involving listing processes, doing network connectivity testing. One of their slip-ups was missing that particular log source and that is what the investigators uncovered to tip them off to the threat actor also operating extensively in the environment. Tom: Can you kind of take us through an overview of the kinds of tools that you all are seeing them use here? Sure, Dave.
Play episode from 06:01
Transcript


