

In August 2022, SecurityScorecard was the target of a spear-phishing campaign involving two attacks. Vigilant employees alerted SecurityScorecard’s Threat Research, Intelligence, Knowledge & Engagement (STRIKE) team, and they moved immediately into action. Not only was the STRIKE team successful in stopping the attack, but they also conducted a counter-offensive operation, exposing the attackers’ IP address and estimated location and shutting down the bank account associated with their operation. This video details the methodologies used by STRIKE to successfully defend against this attack, gain additional intelligence, and deny the threat actors use of its infrastructure.