US-CERT Alert TA18-276A and TA18-276B
-
Got these this morning.
https://www.us-cert.gov/ncas/alerts/TA18-276A-- Using Rigorous Credential Control to Mitigae Trusted Network Exploitation
https://www.us-cert.gov/ncas/alerts/TA18-276B -- APT Activity Exploiting Managed Service Providers.
https://www.us-cert.gov/APTs-Targeting-IT-Service-Provider-CustomersThese documents have tons of info including mitigations and howtos, including some tools that orgs may use.
-
Thanks for the site. Added it to my RSS feed reader, lol.
-
I subscribe to their daily email blast. I get all sorts of emails about vulns in Industrial software, foreign malware campaigns, etc.