InfoTechTarget and Informa Tech's Digital Businesses Combine.

Together, we power an unparalleled network of 220+ online properties covering 10,000+ granular topics, serving an audience of 50+ million professionals with original, objective content from trusted sources. We help you gain critical insights and make more informed decisions across your business priorities.

Proactive defense against UNC3944: Hardening your enterprise

Presented by

Google Threat Intelligence and Mandiant experts

About this talk

In light of the recent high-profile attacks on US and UK retail, we’re hosting this webinar on UNC3944, aka Scattered Spider. Get insight on the actor and expert advice on hardening your enterprise. From late 2024 through early 2025, Google Threat Intelligence Group observed a decline in activity conducted by certain threat clusters, such as UNC3944 and UNC3786, associated with the underground community known as "The Com." Some of these threat clusters, including UNC3944, overlap with public reporting on Scattered Spider, which may be behind recent ransomware attacks impacting the UK retail sector. We recently observed activity using similar TTPs impacting US organizations operating in multiple sectors including retail. Preliminary analysis indicates that there are TTP overlaps with prior activity originating from threat clusters associated with The Com, but attribution to specific threat clusters is still ongoing at this time. Threat actors associated with The Com have historically been aggressive, creative, and particularly effective at circumventing mature security programs. They have had a lot of success with social engineering and leveraging third parties to gain entry to their targets. Mandiant has provided a hardening guide based on our experience with more details on their tactics and steps organizations can take to defend themselves. This webinar will provide critical insights and actionable recommendations to defend against the evolving tactics of UNC3944 and related groups. Drawing from extensive experience responding to this actor, we will prioritize key areas for proactive hardening across your enterprise, including: *Enhancing Identity Security *Fortifying Endpoints & Cloud Resources *Strengthening Network Defenses *Boosting Monitoring and Detection *Cultivating Social Engineering Awareness
Mandiant | Intelligence and Expertise

Mandiant | Intelligence and Expertise

170983 subscribers147 talks
Make Google part of your security team
Mandiant is a recognized leader in dynamic cyber defense, threat intelligence and incident response services. By scaling decades of frontline experience, Mandiant helps organizations to be confident in their readiness to defend against and respond to cyber threats. Mandiant is part of Google Cloud.
Related topics