Search a title or topic

Over 20 million podcasts, powered by 

Player FM logo
Artwork

Content provided by SafeBreach. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by SafeBreach or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.
Player FM - Podcast App
Go offline with the Player FM app!

Ep. 13 - Proactive Security vs. Dragonfly: Using BAS, AEV & CART to Outpace Adversaries

9:45
 
Share
 

Manage episode 504182479 series 3675440
Content provided by SafeBreach. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by SafeBreach or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

In this episode of the Cyber Resilience Brief, co-hosts Tova Dvorin and Adrian Culley dive into the FBI’s recent PSA 25820 alert on Dragonfly (a.k.a. Energetic Bear, Static Tundra) — one of the most persistent, state-sponsored Russian cyber espionage groups targeting critical infrastructure and industrial control systems (ICS).

We break down Dragonfly’s latest tactics, including:

  • Exploiting unpatched vulnerabilities in legacy systems

  • Deploying custom malware (SinfulNOC) for long-term persistence

  • Conducting reconnaissance inside victim networks

Most importantly, we explore how Breach and Attack Simulation (BAS), Adversary Exposure Validation (AEV), and Continuous Red Teaming (CART) can help organizations defend against Dragonfly’s TTPs (tactics, techniques, and procedures) and proactively test defenses against real-world threats.

Whether you’re a CISO, SOC analyst, or security engineer, this episode offers practical, intelligence-led insights to strengthen your cyber resilience strategy.

  continue reading

13 episodes

Artwork
iconShare
 
Manage episode 504182479 series 3675440
Content provided by SafeBreach. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by SafeBreach or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://podcastplayer.com/legal.

In this episode of the Cyber Resilience Brief, co-hosts Tova Dvorin and Adrian Culley dive into the FBI’s recent PSA 25820 alert on Dragonfly (a.k.a. Energetic Bear, Static Tundra) — one of the most persistent, state-sponsored Russian cyber espionage groups targeting critical infrastructure and industrial control systems (ICS).

We break down Dragonfly’s latest tactics, including:

  • Exploiting unpatched vulnerabilities in legacy systems

  • Deploying custom malware (SinfulNOC) for long-term persistence

  • Conducting reconnaissance inside victim networks

Most importantly, we explore how Breach and Attack Simulation (BAS), Adversary Exposure Validation (AEV), and Continuous Red Teaming (CART) can help organizations defend against Dragonfly’s TTPs (tactics, techniques, and procedures) and proactively test defenses against real-world threats.

Whether you’re a CISO, SOC analyst, or security engineer, this episode offers practical, intelligence-led insights to strengthen your cyber resilience strategy.

  continue reading

13 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play