Got these this morning.
https://www.us-cert.gov/ncas/alerts/TA18-276A-- Using Rigorous Credential Control to Mitigae Trusted Network Exploitation
https://www.us-cert.gov/ncas/alerts/TA18-276B -- APT Activity Exploiting Managed Service Providers.
https://www.us-cert.gov/APTs-Targeting-IT-Service-Provider-Customers
These documents have tons of info including mitigations and howtos, including some tools that orgs may use.