* . *
  • About
  • Advertise
  • Privacy & Policy
  • Contact
Friday, June 26, 2026
Earth-News
  • Home
  • Business
  • Entertainment

    AMC Entertainment Raises $200 Million in Stock Offering to Drive Growth and Innovation

    Grammy-Winning Artist Ignites Fierce Debate with Bold Critique of Clive Davis’ Legacy on Social Media

    Crack the Code: Conquer Today’s CryptoQuote Challenge!

    Charlie Brown’s longtime pen pal is finally revealed in new Apple TV ‘Peanuts’ movie – Audacy

    New Owner Unveils Plans for Thrilling New Entertainment Venue at Krikorian Property

    I’m With Her Sets Iowa Ablaze with Their Electrifying ‘Sing Me Alive’ Tour

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Calhoun Community College Launches Exciting New Diesel Technology Program This Fall

    Phillip O. Berry Academy of Technology Faces Off Against Oceanside in an Epic Basketball Showdown on June 26

    Micron Technology’s Bearish Momentum Intensifies: Key Insights for Investors

    Can Marvell Technology Sustain Its Remarkable AI Networking Momentum?

    Revolutionary Advanced Packaging Technology on 9SW Platform Drives Next-Generation Radio Frequency Innovation

    Deadly Tesla Crash Triggers Urgent Federal Safety Investigation

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
  • Home
  • Business
  • Entertainment

    AMC Entertainment Raises $200 Million in Stock Offering to Drive Growth and Innovation

    Grammy-Winning Artist Ignites Fierce Debate with Bold Critique of Clive Davis’ Legacy on Social Media

    Crack the Code: Conquer Today’s CryptoQuote Challenge!

    Charlie Brown’s longtime pen pal is finally revealed in new Apple TV ‘Peanuts’ movie – Audacy

    New Owner Unveils Plans for Thrilling New Entertainment Venue at Krikorian Property

    I’m With Her Sets Iowa Ablaze with Their Electrifying ‘Sing Me Alive’ Tour

  • General
  • Health
  • News

    Cracking the Code: Why China’s Economic Challenges Aren’t Shaking Markets, Unlike America’s” – Bloomberg

    Trump’s Narrow Window to Spread the Truth About Harris

    Trump’s Narrow Window to Spread the Truth About Harris

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    Israel-Gaza war live updates: Hamas leader Ismail Haniyeh assassinated in Iran, group says

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    PAP Boss to Niger Delta Youths, Stay Away from the Protest

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Court Restricts Protests In Lagos To Freedom, Peace Park

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Fans React to Jazz Jennings’ Inspiring Weight Loss Journey

    Trending Tags

    • Trump Inauguration
    • United Stated
    • White House
    • Market Stories
    • Election Results
  • Science
  • Sports
  • Technology

    Calhoun Community College Launches Exciting New Diesel Technology Program This Fall

    Phillip O. Berry Academy of Technology Faces Off Against Oceanside in an Epic Basketball Showdown on June 26

    Micron Technology’s Bearish Momentum Intensifies: Key Insights for Investors

    Can Marvell Technology Sustain Its Remarkable AI Networking Momentum?

    Revolutionary Advanced Packaging Technology on 9SW Platform Drives Next-Generation Radio Frequency Innovation

    Deadly Tesla Crash Triggers Urgent Federal Safety Investigation

    Trending Tags

    • Nintendo Switch
    • CES 2017
    • Playstation 4 Pro
    • Mark Zuckerberg
No Result
View All Result
Earth-News
No Result
View All Result
Home Technology

Researchers offer free threat briefings on Vegas casino hackers

September 28, 2023
in Technology
Researchers offer free threat briefings on Vegas casino hackers
Share on FacebookShare on Twitter

Sergey Nivens – stock.adobe.com

Permiso, a cloud detection and response startup, is making its threat intel team available to speak on Scattered Spider, the group behind recent cyber attacks on MGM Resorts and Caesars Entertainment

Alex Scroxton

By

Alex Scroxton,
Security Editor

Published: 27 Sep 2023 14:00

Organisations concerned about the possible impact of cyber attacks originating through the threat actor tracked variously as Scattered Spider, UNC3944 and 0ktapus can avail themselves of free worldwide threat briefings available from researchers at cloud detection and response startup Permiso.

Scattered Spider has been active for over a year, but has achieved renewed prominence in the past few weeks with a series of damaging cyber attacks on two high-profile operators of casinos in Las Vegas – MGM Resorts and Caesars Entertainment.

Its current modus operandi appears to centre the targeting of its victims via achieving elevated admin rights within their cloud tenants and then conducting social engineering attacks against their IT helpdesks to achieve persistence.

Besides MGM Resorts and Caesars Entertainment, its victimology includes mostly Fortune 2000 companies in sectors such as hospitality, manufacturing, retail, software and telecoms. Its ultimate goal appears to be to steal intellectual property (IP) and other data for extortion, and it may in some cases act as an affiliate of ransomware-as-a-service (RaaS) provider ALPHV/BlackCat.

Permiso, which tracks the threat actor through its P0 Labs team under the designation LUCR-3, has already supported several organisations that have been attacked by it.

Company co-founder and CEO Jason Martin, who previously worked at FireEye for a number of years, said Permiso was moved to offer free briefings because the group is renowned for being tricky to pin down precisely.

“LUCR-3 (AKA Scattered Spider) is a threat actor group the P0 Labs team has been following closely in the past year. They are orchestrating campaigns across cloud environments that touch not only the cloud hosting providers like [Microsoft] Azure or AWS [Amazon Web Services], but span across identity providers and multiple SaaS environments like CRMs [customer relationship management tools], team collaboration tools, productivity suites and into CI/CD [continuous integration/continuous delivery] pipelines,” explained Martin.

“They cover their tracks meticulously and can be difficult to detect, but we’ve learned a great deal about their TTPs [tactics, techniques and procedures] and want to freely share that with the broader community to help organisations defend against this group.”

A bit part of Scattered Spider’s “success” to date has been something of a deficit in many organisations’ cloud security postures, particularly as they relate to runtime visibility. Martin explained that while point-in-time scanning and snapshot solutions are adept at focusing on the posture of a cloud environment to ensure resources are configured securely to protect against rudimentary attacks, detecting attacks against environments at runtime still presents a significant challenge.

This challenge is magnified by Scattered Spider as it easily and effectively moves across authentication boundaries over the entire attack surface within the cloud, and moreover, because much of its access and activity in the cloud is done through shared credentials like roles and access keys, tracking it to one individual is difficult, and telling a genuine user apart from a cyber criminal is much harder, meaning many of Scattered Spider’s attacks have likely gone undetected until it’s too late.

The use of shared credentials in this way by threat actors is a clear trend at this point. As a recent Crowdstrike report revealed, there has been a significant ramp-up in attempts to steal secret keys and other credential materials via cloud instance metadata application programming interfaces (APIs).

Interested parties can schedule threat briefings with the P0 Labs team at their convenience. These will be led by P0 Labs senior vice-president Ian Ahl, who was formerly head of advanced practices at Google Cloud-backed Mandiant.

Among other things, it will cover the TTPs of the gang, its role in extortion through data theft, and its recent attacks against multiple cloud environments. Ahl will also cover how end-user security teams can develop detections in their own environments based on Scattered Spider’s attack patterns, and other basic steps they can take to prevent breaches and reduce dwell times.

Read more on Hackers and cybercrime prevention


City of Las Vegas masters cyber incident response with Darktrace

AlexScroxton

By: Alex Scroxton


Google and Mandiant flex cybersecurity muscle at mWISE

JonOltsik

By: Jon Oltsik


Strong identity security could’ve saved MGM, Caesars, Retool

JackPoller

By: Jack Poller


Okta: Caesars, MGM hacked in social engineering campaign

AlexanderCulafi

By: Alexander Culafi

>>> Read full article>>>
Copyright for syndicated content belongs to the linked Source : Computer Weekly – https://www.computerweekly.com/news/366553223/Researchers-offer-free-threat-briefings-on-Vegas-casino-hackers

Tags: OfferResearcherstechnology
Previous Post

City of Las Vegas masters cyber incident response with Darktrace

Next Post

Post Office had no interest in subpostmaster welfare when taking legal action, says Fujitsu memo

Calhoun Community College Launches Exciting New Diesel Technology Program This Fall

June 26, 2026

Revolutionary Chemical Ecology Breakthroughs Poised to Transform Organic Blueberry Pest Control in 2026

June 26, 2026

Pacquiao and Mayweather rematch postponed indefinitely – Yahoo Sports

June 26, 2026

WIU Chemistry Department Sparks Exciting Student Research Through Dynamic Illinois Junior Academy of Science Partnership

June 26, 2026

Experience Dino Day This Weekend at the Louisiana Art and Science Museum!

June 26, 2026

How Blood Metabolites Reveal the Hidden Effects of Lifestyle on Brain Health Before Dementia

June 26, 2026

USMNT’s Turner Faces Challenges in Gritty World Cup Debut

June 26, 2026

Six Eye-Opening Charts That Expose the Reality of China’s Slowing Economy

June 26, 2026

Mount Sinai Adolescent Health Center Celebrated with Prestigious 2026 Award for Advancing Youth Health and Equity

June 26, 2026

AMC Entertainment Raises $200 Million in Stock Offering to Drive Growth and Innovation

June 26, 2026

Categories

Archives

June 2026
M T W T F S S
1234567
891011121314
15161718192021
22232425262728
2930  
« May    
Earth-News.info

The Earth News is an independent English-language daily published Website from all around the World News

Browse by Category

  • Business (20,132)
  • Ecology (1,286)
  • Economy (1,307)
  • Entertainment (22,184)
  • General (22,312)
  • Health (10,342)
  • Lifestyle (1,319)
  • News (22,149)
  • People (1,310)
  • Politics (1,327)
  • Science (16,521)
  • Sports (21,805)
  • Technology (16,292)
  • World (1,299)

Recent News

Calhoun Community College Launches Exciting New Diesel Technology Program This Fall

June 26, 2026

Revolutionary Chemical Ecology Breakthroughs Poised to Transform Organic Blueberry Pest Control in 2026

June 26, 2026
  • About
  • Advertise
  • Privacy & Policy
  • Contact

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

No Result
View All Result

© 2023 earth-news.info

Go to mobile version