Powerful threat prediction, prevention, detection, and response along with compliance in a scalable, simple managed solution.
Whether you have 10 locations or 10,000+, Acumera’s combination of edge computing, networking, security, and 24x7 support gives you the flexibility to manage and scale your distributed networks while unlocking unlimited possibilities for innovation. As network security leaders and edge originators, Acumera combines the immediacy of localized computing with the power of the cloud, enabling real-time computation to deliver value to your business. Read More
Accelerate business growth through our award-winning partner program.
Applies To: EventTracker 8.x and later.
Russia's civilian and military intelligence services engaged in aggressive and sophisticated cyber-enabled operations targeting the U.S. government and its citizens. The U.S. Government refers to this activity as GRIZZLY STEPPE. These cyber operations included spear phishing campaigns targeting government organizations, critical infrastructure entities, think tanks, universities, political organizations, and corporations, and theft of information from these organizations. This stolen information was later publicly released by third parties.
EventTracker helps you to detect GRIZZLY STEPPE attack using Indicator of compromise given by US-CERT from NCM events or any traffic report (e.g. Cisco ASA-Traffic details) of EventTracker.
EventTracker Knowledge Pack for Grizzly Steppe detection allows you to monitor the following components:-
Once NCM or traffic report is configured to persist report to EventTracker Manager; Reports can be generated.
Some of the Knowledge Packs available in EventTracker are listed below. For more information, please refer Integration Guide.
The configuration details in this guide are consistent with EventTracker version 7.x and later.
For more information please refer to the Integration guide