But they didn’t do ANYTHING in the election.
“the web shells placed on Exchange Servers have been named differently in each intrusion, and thus the file name alone is not a high-fidelity indicator of compromise,”
Just Wow, who would have ever thought that a compromise of this sort would use random file names.
so if the intrusion used static file names like Code Red or Nimda it would be a Lo Fidelity attack ?
P.S. btw we are fireye the premier intrusion detection company and once Microsoft gave us the details of the compromise we adjusted our detection so we can maybe find it.
Dont pay lo-fi prices when you can pay more for our tweak Hi-FI