Living off the land: Cyber attackers ‘log in’ to harvest data
FEATURE: Cybercriminals are increasingly using stolen credentials and exploiting legitimate tools and native access to “log in, instead of breaking in”, blend into their target’s environment and carry out ‘living off the land’ (LOTL) attacks; Policing Insight’s Andrew Staniforth looks at the nature of LOTL attacks, and why all organisations – including police and law enforcement agencies – should remove all unnecessary files, applications and systems to reduce their attack surface to such threats.