{"id":4415,"date":"2020-12-09T09:29:53","date_gmt":"2020-12-09T13:29:53","guid":{"rendered":"https:\/\/solutionsreview.com\/endpoint-security\/?p=4415"},"modified":"2020-12-08T14:46:42","modified_gmt":"2020-12-08T18:46:42","slug":"the-five-most-impactful-apt-attack-vectors-you-need-to-know-about","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/","title":{"rendered":"The Five Most Impactful APT Attack Vectors You Need to Know About"},"content":{"rendered":"<h2><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-4397\" src=\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg\" alt=\"The Five Most Impactful APT Attack Vectors You Need to Know About\" width=\"800\" height=\"400\" srcset=\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg 800w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe-300x150.jpg 300w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe-768x384.jpg 768w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe-540x270.jpg 540w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe-162x81.jpg 162w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe-360x180.jpg 360w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/h2>\n<h2 style=\"text-align: justify\"><strong>The Five Most Impactful APT Attack Vectors You Need to Know About<\/strong><\/h2>\n<p style=\"text-align: justify\">\u00a0<em>By: Yanir Laubshtein, VP, Cybersecurity &amp; Industry, <a href=\"https:\/\/www.nanolocksecurity.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">NanoLock Security<\/a>, writing for the <a href=\"https:\/\/twitter.com\/search?q=%23InfoSecInsightJam\" target=\"_blank\" rel=\"noopener noreferrer\">#InfoSecInsightJam<\/a>.\u00a0<\/em><\/p>\n<p style=\"text-align: justify\">The last year has taught us that the trend of connectivity isn\u2019t slowing down \u2013 in fact, increased digital dependency will continue in the wake of COVID-19, thrusting us into a new normal where remote connectivity is more deeply integrated into our daily lives than ever before. Post-COVID, we will not only be surrounded by more connected devices, but these devices will also feature higher levels of functionality that demand more sophisticated security precautions. Due to the pandemic and rapid technological change, we are becoming even more dependent on the IoT in critical infrastructures (e.g., smart meters, sensors, actuators, and industrial controllers). As this happens, governments and critical infrastructure operators are also adopting IoT technologies. This creates a growing arena for increasingly sophisticated cyber-attacks.<\/p>\n<p style=\"text-align: justify\">Though not a new category of attack, Advanced Persistent Threat attacks (APTs) are one of the biggest <a href=\"https:\/\/solutionsreview.com\/endpoint-security\/free-endpoint-protection-buyers-guide\/\" target=\"_blank\" rel=\"noopener noreferrer\">cyber threats<\/a> today, especially to the IoT, as more devices become connected. An APT is when an unauthorized user gains a persistent presence in a system or device, and because the attack is permanent in the device, a simple restart will not necessarily rid the device of it. This persistency allows an attacker to cause more damage over a longer period of time.<\/p>\n<p style=\"text-align: justify\">There are several components of an APT attack and the general process it follows. After first planning for who, how, or why the attack is going to happen and then building or acquiring the attack tool, the next step is delivering it to the infiltrated device. This can be done remotely, locally, or even during the manufacturing of the device itself. Finally, there is the deployment, wherein the malicious payload is looking for the location in which to become persistent, i.e., to be saved or deployed in the Flash \/ Non-Volatile Memory in order to survive a restart or power loss. These attacks can be carried out through different vectors: by outsiders or hackers, by insiders, which are often deceived technicians or disgruntled employees, or through the supply chain (i.e., deceived contractor), where malware is injected directly into a device during manufacturing or delivery.<\/p>\n<p style=\"text-align: justify\">As mentioned, there are many ways in which APT attacks typically manifest themselves. This includes fraud and theft, ransomware, state-level attacks to critical infrastructure, personal data theft, and Distributed Denial of Service (DDoS). These five core APT attack outcomes categories each bring their own challenges, so it is important for security professionals to be well versed in the ways they can appear.<\/p>\n<p><span style=\"font-weight: 400\"><div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"#\" href=\"https:\/\/solutionsreview.com\/endpoint-security\/free-endpoint-protection-buyers-guide\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" src=\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2019\/01\/endpoint-security-speedbump-cta.jpg\" alt=\"Download Link to Endpoint Security Buyer's Guide\" width=\"800\" height=\"225\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div><\/span><\/p>\n<h3 style=\"text-align: justify\"><strong>Fraud<\/strong> <strong>&amp; Theft<\/strong><\/h3>\n<p style=\"text-align: justify\">Leveraging APTs for the purpose of fraud and theft is a growing issue. In some cases, an APT uses its persistency stealthily to directly influence the performance of the affected device for fraudulent activities. <a href=\"https:\/\/www.zdnet.com\/article\/three-suspects-arrested-in-maltese-bank-cyber-heist\/\" target=\"_blank\" rel=\"noopener noreferrer\">One example<\/a> was at the Bank of Valetta in Malta, which accounts for almost half of the country\u2019s banking transactions. Hackers planted malware on the bank\u2019s internal servers, successfully transferring \u20ac13 million directly from bank customer accounts. The breach wasn\u2019t detected until the next day when a daily reconcile spotted the number of unauthorized transactions. This example illustrates the scale at which malware can operate when undetected, especially against financial institutions like banks.<\/p>\n<h3 style=\"text-align: justify\"><strong>Ransomware <\/strong><\/h3>\n<p style=\"text-align: justify\">Ransomware has similar goals and vectors as other attack types listed here and continues to grow in popularity. <a href=\"https:\/\/www.csoonline.com\/article\/3236183\/what-is-ransomware-how-it-works-and-how-to-remove-it.html\" target=\"_blank\" rel=\"noopener noreferrer\">CSO Online<\/a> defines it most simply: \u201cRansomware is a form of malware that encrypts a victim&#8217;s files. The attacker then demands a ransom from the victim to restore access to the data upon payment.\u201d<\/p>\n<p style=\"text-align: justify\">Ransomware is often thought of as only impacting personal computers or devices, but it can also be used to attack organizations like medical facilities, government agencies, or critical infrastructures, where sensitive data is housed and requires immediate access to files. The healthcare industry is especially vulnerable to attack. In <a href=\"https:\/\/apnews.com\/article\/fbi-ransomware-healthcare-system-7531ca8d2742d855cd374213d111821c\" target=\"_blank\" rel=\"noopener noreferrer\">September 2020, a ransomware attack<\/a> hit 250 U.S. facilities of the hospital chain Universal Health Services, rendering their computer systems useless. The conditions as a result of the attack were described as \u201cchaotic\u201d and had an immediate impact on the chain\u2019s operations and patient care. That same month in Dusseldorf, Germany, <a href=\"https:\/\/apnews.com\/article\/technology-hacking-europe-cf8f8eee1adcec69bcc864f2c4308c94\" target=\"_blank\" rel=\"noopener noreferrer\">the first known fatality<\/a> related to ransomware occurred when an IT system failure forced a critically ill patient to be routed to a hospital in another city.<\/p>\n<h3 style=\"text-align: justify\"><strong>State Level Attacks<\/strong><\/h3>\n<p style=\"text-align: justify\">State-backed attacks on critical infrastructure are on the rise. In 2018, <a href=\"https:\/\/www.ecmag.com\/section\/systems\/dhs-and-fbi-say-russia-hacked-us-electric-grid\" target=\"_blank\" rel=\"noopener noreferrer\">it was announced<\/a> that the U.S. electric grid, among other critical infrastructures, had been targeted and attacked by Russian government hackers going back as far as 2016. Hackers intentionally tried to gain access to power plants and other networks and set up admin accounts with permission to make changes to the system. They then intended to use these accounts to install malware in the network.<\/p>\n<p style=\"text-align: justify\">Smart meters and appliances that are serviced by electrical or water management companies are also exposed to attack. In a recent example from India, <a href=\"https:\/\/www.thehindubusinessline.com\/news\/national\/smart-meters-across-seven-cities-in-up-disconnected-due-to-technical-error\/article32341021.ece\" target=\"_blank\" rel=\"noopener noreferrer\">a malicious insider attack<\/a> on smart meters installed by Energy Efficiency Services Limited (EESL) left 160,000 homes without power \u2013 the largest breach of its kind in India\u2019s history. Future attacks like this are inevitable due to the value of the data contained on meters, which can contain private information about users\u2019 habits, their activity at home, whether or not they\u2019re on vacation, or other important information that could be exploited.<\/p>\n<h3 style=\"text-align: justify\"><strong>Personal<\/strong> <strong>Data Theft<\/strong><\/h3>\n<p style=\"text-align: justify\">APTs used for the purpose of obtaining personal data are among the most well-known cyberthreats. The growing IoT and newly connected categories of devices mean that this threat will only continue to rise and offer new vessels of personal information for attackers to extract from. The increase in the adoption of smart home devices is one example of our growing collective vulnerability. In 2019, <a href=\"https:\/\/www.vice.com\/en\/article\/kzdwp9\/this-hacker-showed-how-a-smart-lightbulb-could-leak-your-wi-fi-password\" target=\"_blank\" rel=\"noopener noreferrer\">a hacker demonstrated<\/a> how to access a LIFX mini white smart lightbulb in under an hour, gaining the owner\u2019s Wi-Fi login and password credentials.<\/p>\n<h3 style=\"text-align: justify\"><strong>Distributed Denial of Service (DDoS)<\/strong><\/h3>\n<p style=\"text-align: justify\">Distributed Denial of Service (DDoS) attack is an attempt to make an online service unavailable to users by flooding it with traffic from multiple services. These attacks are becoming increasingly common and complicated with the growing reliance on digital services and connected devices. According to <a href=\"https:\/\/www.zdnet.com\/article\/ddos-attacks-are-cheaper-and-easier-to-carry-out-than-ever-before\/\" target=\"_blank\" rel=\"noopener noreferrer\">an article from ZDNet<\/a>, \u201cOne of the reasons that DDoS attacks have become cheaper and easier to carry out is because of the proliferation of IoT devices. Large numbers of IoT products come with default usernames and passwords that aren&#8217;t reset, meaning it&#8217;s easy for hackers to take control of them.\u201d<\/p>\n<p style=\"text-align: justify\">The <a href=\"https:\/\/www.csoonline.com\/article\/3258748\/the-mirai-botnet-explained-how-teen-scammers-and-cctv-cameras-almost-brought-down-the-internet.html\" target=\"_blank\" rel=\"noopener noreferrer\">Mirai IoT Botnet attack<\/a> is one of the most well-known examples of a DDoS attack. In 2016, the Mirai botnet was a series of attacks that scanned big blocks of the internet for open Telnet ports and then attempted to log in using a series of default passwords, amassing an \u201carmy of compromised closed-circuit TV cameras and routers, ready to do its bidding.\u201d The attack rendered most of the U.S. East Coast internet service useless.<\/p>\n<h3 style=\"text-align: justify\"><strong>Conclusion<\/strong><\/h3>\n<p style=\"text-align: justify\">APT attacks will only continue to increase in number and sophistication. I believe that the most effective cyber-solutions providers will be those that work to detect and prevent APT attacks at the flash level, and prevent attack persistency, enable quick recovery, and collect forensic data for advanced analytics. This information can then be leveraged by an organization\u2019s security operations center (SOC) to continuously enrich and improve defenses and stay ahead of new attacks.<\/p>\n<div class=\"hr hr\"><\/div>\n<p>Thanks to Yanir Laubshtein for his time and expertise on the most impactful APT attack vectors for the <a href=\"https:\/\/twitter.com\/search?q=%23InfoSecInsightJam\" target=\"_blank\" rel=\"noopener noreferrer\">#InfoSecInsightJam<\/a>. Learn more in our <a href=\"https:\/\/solutionsreview.com\/endpoint-security\/free-endpoint-protection-buyers-guide\/\" target=\"_blank\" rel=\"noopener noreferrer\">Endpoint Security Buyer&#8217;s Guide<\/a>.<\/p>\n<p style=\"text-align: justify\"><strong>About Author: Yanir Laubshtein<\/strong><\/p>\n<p style=\"text-align: justify\">Yanir Laubshtein is VP, Cyber Solutions, at <a href=\"https:\/\/www.nanolocksecurity.com\/\" target=\"_blank\" rel=\"noopener noreferrer\">NanoLock Security<\/a>, where he brings over 20 years of experience working in the cybersecurity industry in various roles both for the government and private sectors, including his most recent at PwC\u2019s Cybersecurity &amp; Privacy Impact Center. There he served as the OT\/ICS Security Lead in the company\u2019s ICS\/OT Centre of excellence, guiding the ICS\/OT service offerings of the center to enable and support governments and organizations with protecting their critical infrastructures. Prior to joining PwC, Yanir led two strategic government projects in Israel, managing the Cybersecurity Operations on behalf of the Ministry of Energy and the Water &amp; Sewage Authority and subsequently designing and managing the development of Israel&#8217;s National C-SOC for Critical Infrastructures.<\/p>\n<p style=\"text-align: justify\">Earlier in his career, Yanir served for over 10 years in a range of Israeli Government Security positions, both in the defensive and the offensive cyber arenas.<\/p>\n<p><span style=\"font-weight: 400\"><div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"#\" href=\"https:\/\/solutionsreview.com\/endpoint-security\/free-endpoint-protection-buyers-guide\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" src=\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2019\/01\/endpoint-security-speedbump-cta.jpg\" alt=\"Download Link to Endpoint Security Buyer's Guide\" width=\"800\" height=\"225\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div><\/span><\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-4410\" src=\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/12\/Insight-Jam-Blog-InfoSec-Narrow-scaled.jpg\" alt=\"Solutions Review\u2019s First Annual Cybersecurity Insight Jam: Event Live Blog\" width=\"1024\" height=\"259\" srcset=\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/12\/Insight-Jam-Blog-InfoSec-Narrow-scaled.jpg 1024w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/12\/Insight-Jam-Blog-InfoSec-Narrow-scaled-300x76.jpg 300w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/12\/Insight-Jam-Blog-InfoSec-Narrow-scaled-768x194.jpg 768w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/12\/Insight-Jam-Blog-InfoSec-Narrow-scaled-800x202.jpg 800w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/12\/Insight-Jam-Blog-InfoSec-Narrow-scaled-1000x253.jpg 1000w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/12\/Insight-Jam-Blog-InfoSec-Narrow-scaled-600x152.jpg 600w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/12\/Insight-Jam-Blog-InfoSec-Narrow-scaled-180x46.jpg 180w, https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/12\/Insight-Jam-Blog-InfoSec-Narrow-scaled-400x101.jpg 400w\" sizes=\"(max-width: 1024px) 100vw, 1024px\" \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>The Five Most Impactful APT Attack Vectors You Need to Know About \u00a0By: Yanir Laubshtein, VP, Cybersecurity &amp; Industry, NanoLock Security, writing for the #InfoSecInsightJam.\u00a0 The last year has taught us that the trend of connectivity isn\u2019t slowing down \u2013 in fact, increased digital dependency will continue in the wake of COVID-19, thrusting us into [&hellip;]<\/p>\n","protected":false},"author":41,"featured_media":4397,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[2,335],"tags":[1338,1343,1344,1345,1346,31,75,1330,22,13,40,1337,1342],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>The Five Most Impactful APT Attack Vectors You Need to Know About<\/title>\n<meta name=\"description\" content=\"The Five Most Impactful APT Attack Vectors You Need to Know About by Yanir Laubshtein of NanoLock Security for the #InfoSecInsightJam.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"The Five Most Impactful APT Attack Vectors You Need to Know About\" \/>\n<meta property=\"og:description\" content=\"The Five Most Impactful APT Attack Vectors You Need to Know About by Yanir Laubshtein of NanoLock Security for the #InfoSecInsightJam.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/\" \/>\n<meta property=\"og:site_name\" content=\"Best Endpoint Protection Security (EPP) Tools, Software, Solutions &amp; Vendors\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/solutionsreview\" \/>\n<meta property=\"article:published_time\" content=\"2020-12-09T13:29:53+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2020-12-08T18:46:42+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"800\" \/>\n\t<meta property=\"og:image:height\" content=\"400\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Ben Canner\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@InfoSec_Review\" \/>\n<meta name=\"twitter:site\" content=\"@InfoSec_Review\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ben Canner\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"7 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/\"},\"author\":{\"name\":\"Ben Canner\",\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/#\/schema\/person\/357f925262827fcf840b4341920a1541\"},\"headline\":\"The Five Most Impactful APT Attack Vectors You Need to Know About\",\"datePublished\":\"2020-12-09T13:29:53+00:00\",\"dateModified\":\"2020-12-08T18:46:42+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/\"},\"wordCount\":1455,\"publisher\":{\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/#organization\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg\",\"keywords\":[\"#InfoSecInsightJam\",\"Advanced Persistent Threat\",\"APT\",\"APT Attack\",\"APT Attack Vector\",\"Best Practices\",\"Cybersecurity\",\"Cybersecurity Insight Jam\",\"Endpoint Protection\",\"Endpoint Security\",\"EPP\",\"InfoSec Insight Jam\",\"NanoLock Security\"],\"articleSection\":[\"Best Practices\",\"Featured\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/\",\"url\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/\",\"name\":\"The Five Most Impactful APT Attack Vectors You Need to Know About\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg\",\"datePublished\":\"2020-12-09T13:29:53+00:00\",\"dateModified\":\"2020-12-08T18:46:42+00:00\",\"description\":\"The Five Most Impactful APT Attack Vectors You Need to Know About by Yanir Laubshtein of NanoLock Security for the #InfoSecInsightJam.\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg\",\"width\":800,\"height\":400,\"caption\":\"The Illusive Networks 2021 Predictions by Ofer Israeli\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/endpoint-security\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The Five Most Impactful APT Attack Vectors You Need to Know About\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/#website\",\"url\":\"https:\/\/solutionsreview.com\/endpoint-security\/\",\"name\":\"Best Endpoint Protection Security (EPP) Tools, Software, Solutions &amp; Vendors\",\"description\":\"All the Latest News, Best Practices and Buyer&#039;s Guides for Endpoint Security and Protection\",\"publisher\":{\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/endpoint-security\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/#organization\",\"name\":\"Solutions Review\",\"url\":\"https:\/\/solutionsreview.com\/endpoint-security\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2016\/05\/SR_Icon.png\",\"contentUrl\":\"https:\/\/solutionsreview.com\/endpoint-security\/files\/2016\/05\/SR_Icon.png\",\"width\":200,\"height\":200,\"caption\":\"Solutions Review\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/#\/schema\/logo\/image\/\"},\"sameAs\":[\"https:\/\/www.facebook.com\/solutionsreview\",\"https:\/\/x.com\/InfoSec_Review\",\"https:\/\/www.linkedin.com\/company\/cyber-security-solutions-review\",\"https:\/\/www.youtube.com\/user\/SolutionsReview\"]},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/#\/schema\/person\/357f925262827fcf840b4341920a1541\",\"name\":\"Ben Canner\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/endpoint-security\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"caption\":\"Ben Canner\"},\"description\":\"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.\",\"url\":\"https:\/\/solutionsreview.com\/endpoint-security\/author\/bcanner\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"The Five Most Impactful APT Attack Vectors You Need to Know About","description":"The Five Most Impactful APT Attack Vectors You Need to Know About by Yanir Laubshtein of NanoLock Security for the #InfoSecInsightJam.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/","og_locale":"en_US","og_type":"article","og_title":"The Five Most Impactful APT Attack Vectors You Need to Know About","og_description":"The Five Most Impactful APT Attack Vectors You Need to Know About by Yanir Laubshtein of NanoLock Security for the #InfoSecInsightJam.","og_url":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/","og_site_name":"Best Endpoint Protection Security (EPP) Tools, Software, Solutions &amp; Vendors","article_publisher":"https:\/\/www.facebook.com\/solutionsreview","article_published_time":"2020-12-09T13:29:53+00:00","article_modified_time":"2020-12-08T18:46:42+00:00","og_image":[{"width":800,"height":400,"url":"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg","type":"image\/jpeg"}],"author":"Ben Canner","twitter_card":"summary_large_image","twitter_creator":"@InfoSec_Review","twitter_site":"@InfoSec_Review","twitter_misc":{"Written by":"Ben Canner","Est. reading time":"7 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#article","isPartOf":{"@id":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/"},"author":{"name":"Ben Canner","@id":"https:\/\/solutionsreview.com\/endpoint-security\/#\/schema\/person\/357f925262827fcf840b4341920a1541"},"headline":"The Five Most Impactful APT Attack Vectors You Need to Know About","datePublished":"2020-12-09T13:29:53+00:00","dateModified":"2020-12-08T18:46:42+00:00","mainEntityOfPage":{"@id":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/"},"wordCount":1455,"publisher":{"@id":"https:\/\/solutionsreview.com\/endpoint-security\/#organization"},"image":{"@id":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg","keywords":["#InfoSecInsightJam","Advanced Persistent Threat","APT","APT Attack","APT Attack Vector","Best Practices","Cybersecurity","Cybersecurity Insight Jam","Endpoint Protection","Endpoint Security","EPP","InfoSec Insight Jam","NanoLock Security"],"articleSection":["Best Practices","Featured"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/","url":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/","name":"The Five Most Impactful APT Attack Vectors You Need to Know About","isPartOf":{"@id":"https:\/\/solutionsreview.com\/endpoint-security\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg","datePublished":"2020-12-09T13:29:53+00:00","dateModified":"2020-12-08T18:46:42+00:00","description":"The Five Most Impactful APT Attack Vectors You Need to Know About by Yanir Laubshtein of NanoLock Security for the #InfoSecInsightJam.","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#primaryimage","url":"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg","contentUrl":"https:\/\/solutionsreview.com\/endpoint-security\/files\/2020\/11\/oie_ZLclKDdLMbLe.jpg","width":800,"height":400,"caption":"The Illusive Networks 2021 Predictions by Ofer Israeli"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/endpoint-security\/the-five-most-impactful-apt-attack-vectors-you-need-to-know-about\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/endpoint-security\/"},{"@type":"ListItem","position":2,"name":"The Five Most Impactful APT Attack Vectors You Need to Know About"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/endpoint-security\/#website","url":"https:\/\/solutionsreview.com\/endpoint-security\/","name":"Best Endpoint Protection Security (EPP) Tools, Software, Solutions &amp; Vendors","description":"All the Latest News, Best Practices and Buyer&#039;s Guides for Endpoint Security and Protection","publisher":{"@id":"https:\/\/solutionsreview.com\/endpoint-security\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/endpoint-security\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/solutionsreview.com\/endpoint-security\/#organization","name":"Solutions Review","url":"https:\/\/solutionsreview.com\/endpoint-security\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/endpoint-security\/#\/schema\/logo\/image\/","url":"https:\/\/solutionsreview.com\/endpoint-security\/files\/2016\/05\/SR_Icon.png","contentUrl":"https:\/\/solutionsreview.com\/endpoint-security\/files\/2016\/05\/SR_Icon.png","width":200,"height":200,"caption":"Solutions Review"},"image":{"@id":"https:\/\/solutionsreview.com\/endpoint-security\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/www.facebook.com\/solutionsreview","https:\/\/x.com\/InfoSec_Review","https:\/\/www.linkedin.com\/company\/cyber-security-solutions-review","https:\/\/www.youtube.com\/user\/SolutionsReview"]},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/endpoint-security\/#\/schema\/person\/357f925262827fcf840b4341920a1541","name":"Ben Canner","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/endpoint-security\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","caption":"Ben Canner"},"description":"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.","url":"https:\/\/solutionsreview.com\/endpoint-security\/author\/bcanner\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/endpoint-security\/wp-json\/wp\/v2\/posts\/4415"}],"collection":[{"href":"https:\/\/solutionsreview.com\/endpoint-security\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/endpoint-security\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/endpoint-security\/wp-json\/wp\/v2\/users\/41"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/endpoint-security\/wp-json\/wp\/v2\/comments?post=4415"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/endpoint-security\/wp-json\/wp\/v2\/posts\/4415\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/endpoint-security\/wp-json\/wp\/v2\/media\/4397"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/endpoint-security\/wp-json\/wp\/v2\/media?parent=4415"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/endpoint-security\/wp-json\/wp\/v2\/categories?post=4415"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/endpoint-security\/wp-json\/wp\/v2\/tags?post=4415"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}