CyberWire Daily

Deep dive into the 2024 Incident Response Report with Unit 42's Michael "Siko" Sikorski [Threat Vector]

22 snips
Jul 5, 2024
Unit 42's CTO and VP of Engineering, Michael Sikorski, discusses the 2024 Incident Response Report, highlighting cyber threats like AI use, software vulnerabilities, 'living off the land' attacks, and business disruption supply chain attacks. Recommendations on incident response strategies and mitigating cyber threats are shared.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
ADVICE

Prepare for Harassment Scenarios

  • Prepare detailed playbooks for data theft and harassment scenarios.
  • Work with ransomware negotiators who understand threat actor behaviors to make informed decisions.
INSIGHT

Wiper Attacks Surge

  • Wiper attacks increased fivefold year-over-year, often employed by nation-states for damage.
  • Wipers are also used to destroy evidence after data theft without deploying ransomware.
INSIGHT

Software Vulnerabilities Lead Attacks

  • Software vulnerabilities became the leading initial access vector, surpassing phishing and credential compromise.
  • This shift is driven by many unpatched, exposed external systems and massive vulnerability disclosures in 2023.
Get the Snipd Podcast app to discover more snips from this episode
Get the app