Financial Services.
The bank’s security team lacked clear and reliable detection controls for targeted adversaries that were present on internal and external networks.
Lateral movement on internal networks was nearly impossible to detect with the IT systems they had in place.
The risk of insider threat is high for banks, and the security team was not able to distinguish between normal activity and potentially malicious activity.
The bank used CounterCraft The Platform to detect red teams and unauthorized users on five different attempts to access the SWIFT portal, stopping them from reaching the production environment. This allowed the bank to respond quickly to prevent future attacks and dangerous lateral movements.