←back to thread

630 points 2bluesc | 1 comments | | HN request time: 0.199s | source
1. homiedk ◴[] No.43537474[source]
The troubling aspect is (besides the denials of course) is the absence of controls that should have sniffed this out ASAP. Apparently: - no passive network monitors showing an unknown IP/Mac/Location - no SOAR to kill off the attempts to gain a foothold/move laterally - no alerts on above or anything else in the SOC