Register for the Workshop
Register to watch on-demand
Thank you for registering!
We've received your request and will get back to you soon.

If you do not hear from us in the next 48 hours, please check your spam folder!
Back to homepage
Webinar
On-demand Webinar
Webinar
On-demand Webinar

Microsoft Azure: Unpacking Real World Hybrid Compromises and Attack Techniques targeting the Cloud

As attackers continually refine their techniques, Microsoft Azure—one of the most valuable targets in the cloud ecosystem—faces relentless assaults. With over 600 million daily attacks detailed in the Microsoft Digital Defense Report 2024, threat actors increasingly focus on Azure’s rich infrastructure for identity breaches, data exfiltration, and persistent access.

30 minutes
December 4, 2024
11AM ET
Register for a free webinar
Register for a free on-demand webinar
Thank you for registering!
We've received your request and will get back to you soon.

If you do not hear from us in the next 48 hours, please check your spam folder!
Back to homepage

Summary

Hybrid and multi-cloud setups using Microsoft Entra ID, Azure, and M365 with Copilot expand opportunities for adversaries like Scattered Spider (UNC3944) and Midnight Blizzard to exploit. This session delves into the tradecraft of these groups, from initial access through lateral movement, to reveal how they compromise identities and strategically target high-value assets in Azure environments.  

  • Tactics and Techniques: Exploring evolving techniques by Scattered Spider and Midnight Blizzard in real world compromises.
  • Anatomy of a hybrid attack: Attackers go dormant, their techniques don’t. Methodologies are democratized and improved to target hybrid deployments.
  • Defensive Measures: Strategies and tools to effectively defend against advanced APT groups in the evolving hybrid attack landscape. Why visibility across connected threat surfaces is no longer optional, but a requirement for defenders.
Share

Speakers

Aakash Gupta
Host
Product Manager, Detection & Response for Public Cloud
FAQs

About Vectra AI

Vectra AI is the leader in hybrid attack detection, investigation and response. The Vectra AI Platform delivers integrated signal across public cloud, SaaS, identity, and data center networks in a single platform. Vectra AI’s patented Attack Signal Intelligence empowers security teams to rapidly detect, prioritize, investigate and stop the most advanced hybrid cyber-attacks. With 35 patents in AI-driven detection and the most vendor references in MITRE D3FEND, organizations worldwide rely on the Vectra AI Platform and MXDR services to move at the speed and scale of hybrid attackers. For more information, visit www.vectra.ai.