Great post by @msftmmpc on #Winnti activity groups: BARIUM and LEAD:
https://blogs.technet.microsoft.com/mmpc/2017/01/25/detecting-threat-actors-in-recent-german-industrial-attacks-with-windows-defender-atp/ …
IOCs:https://otx.alienvault.com/pulse/5888de95ce7b3a28dc0cd785/ …
0 replies
4 retweets
5 likes
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.