Tuesday, August 4, 2020

Stories from the SOC: Compromised account detected

Stories from the SOC is a blog series that describes recent real-world security incident investigations conducted and reported by the AT&T SOC analyst team for AT&T Managed Threat Detection and Response customers.
Executive Summary
The Managed Threat Detection and Response (MTDR) analyst team was notified of multiple logins from different countries. With the shift to a more remote workforce, multiple logins from different locations is not uncommon, but the team discovered the potentially compromised account belonged to a third-party and immediately took action. Every year businesses lose millions due to data breaches caused by third parties. Between 2017 and 2019, there was a 35% increase in third party breaches, with a staggering 13 million records exposed in each breach, including personally identifiable information (PII), financial data, and health records. (Dark Reading) The team took a deeper look and discovered the account was indeed compromised. The analyst team engaged the customer,…

Edwardo Rodriguez Posted by:

Edwardo Rodriguez

Read full post

      

The post Stories from the SOC: Compromised account detected appeared first on Cybersecurity Insiders.


August 04, 2020 at 09:12PM

0 comments:

Post a Comment