Anatomy of an Attack: The BlackSuit Blitz at a Global Equipment Manufacturer
Unit 42 documents a BlackSuit ransomware intrusion operated by Ignoble Scorpius. Initial access via vishing-led credential theft enabled VPN login, followed by DCSync to steal privileged creds, latera…
Category: Threat Alerts / Malware & Ransomware / Ransomware TTPs