In reply to @msftsecintel

Microsoft Threat Intelligence

Microsoft Threat Intelligence

@msftsecintel · Twitter ·

While Storm-1175's methodology aligns with the TTPs of many ransomware actors, analysis of their post-compromise tactics provides insight into how organizations can disrupt attackers even if they have gained initial access to a network.

STorm-1175 attack chain diagram