The 2024 Comcast Business Cybersecurity Threat Report is out: https://business.comcast.com/enterprise/products-services/cybersecurity-services
Some key trends highlighted include:
- Phishing remaining a critical initial access vector with large amount tied to credential access.
- Increase in credential dumping though Active Directory replication and OS credential dumping techniques. “Attackers are increasingly focused on stealing and manipulating authentication credentials to gain unauthorized access and escalate privileges within networks.”
- Increased exploitation of public facing apps
- More sophisticated lateral movement techniques including the exploitation of remote services like Lightweight Directory Access Protocol (LDAP), Remote Desktop Protocol (RDP)
How does this line up with what you are seeing in the threat landscape?