---
title: Recon InfoSec | Security
description: Security |
---

[Skip to content](https://blog.reconinfosec.com/tag/security#main-content)

[![recon_infosec.png](https://blog.reconinfosec.com/hs-fs/hubfs/recon-logo-full-on-white.png?width=7680&height=2304&name=recon-logo-full-on-white.png "recon_infosec.png")](http://reconinfosec.com)

- [Website Home](https://www.reconinfosec.com/)

- [Website Home](https://www.reconinfosec.com/)

## [Microsoft Teams Social Engineering: A Ransomware Attack Vector](https://blog.reconinfosec.com/microsoft-teams-social-engineering-a-ransomware-attack-vector)

![{{ picture_of_text }} {{ content.blog_author.display_name }}](https://blog.reconinfosec.com/hubfs/AndrewCook.png) 

[Andrew Cook](https://blog.reconinfosec.com/author/andrew-cook)

The Recon SOC is seeing an uptick in ransomware groups successfully gaining initial access to...

## [Mastering Threat Hunting Operations: A Deep Dive into Recon InfoSec’s Approach](https://blog.reconinfosec.com/mastering-threat-hunting-operations)

![{{ picture_of_text }} {{ content.blog_author.display_name }}](https://blog.reconinfosec.com/hubfs/watson-brown.png) 

[Watson Brown](https://blog.reconinfosec.com/author/watson-brown)

In today’s rapidly evolving cyber threat landscape, proactive defense is no longer optional—it’s...

## [Audit Active Directory Attack Paths with Bloodhound](https://blog.reconinfosec.com/audit-active-directory-attack-paths-with-bloodhound)

![{{ picture_of_text }} {{ content.blog_author.display_name }}](https://blog.reconinfosec.com/hubfs/Imported%20images/EricCapuano.png) 

[Eric Capuano](https://blog.reconinfosec.com/author/eric-capuano)

In our experience working with SMB and enterprise IT teams, it is often unknown just how far and...

## [Another LastPass Breach and What You Should Know](https://blog.reconinfosec.com/another-lastpass-breach-and-what-you-should-know)

![{{ picture_of_text }} {{ content.blog_author.display_name }}](https://blog.reconinfosec.com/hubfs/Imported%20images/EricCapuano.png) 

[Eric Capuano](https://blog.reconinfosec.com/author/eric-capuano)

As you have no doubt heard, LastPass has suffered yet another breach which makes at least 3...

## [Remote Access Done Right](https://blog.reconinfosec.com/remote-access-done-right)

![{{ picture_of_text }} {{ content.blog_author.display_name }}](https://blog.reconinfosec.com/hubfs/Imported%20images/WhitneyChampion.png) 

[Whitney Champion](https://blog.reconinfosec.com/author/whitney-champion)

Do you have resources on prem? In the cloud? How about in multiple clouds? How do you access them...

## [Recon's Guide to Testing for the Log4J Vulnerability using Canarytokens](https://blog.reconinfosec.com/testing-applications-for-log4j-vulnerability-cve-2021-44228)

![{{ picture_of_text }} {{ content.blog_author.display_name }}](https://blog.reconinfosec.com/hubfs/AndrewCook.png) 

[Andrew Cook](https://blog.reconinfosec.com/author/andrew-cook)

This guide will walk you through using CanaryTokens.org to generate a token and how to use that...

## [Recon's SOAR Playbook To Detect Log4J Exploitation](https://blog.reconinfosec.com/recons-soar-playbook-to-detect-the-log4j-exploit)

![{{ picture_of_text }} {{ content.blog_author.display_name }}](https://blog.reconinfosec.com/hubfs/AndrewCook.png) 

[Andrew Cook](https://blog.reconinfosec.com/author/andrew-cook)

The recent Log4j vulnerability (CVE-2021-44228) is unprecedented in its global scope and impact....

## [Scaling Enterprise Forensic Timelining](https://blog.reconinfosec.com/scaling-enterprise-forensic-timelining)

![{{ picture_of_text }} {{ content.blog_author.display_name }}](https://blog.reconinfosec.com/hubfs/Imported%20images/EricCapuano.png) 

[Eric Capuano](https://blog.reconinfosec.com/author/eric-capuano)

In July, Eric & Whitney gave a talk titled "Breaches Be Crazy" at the SANS DFIR Summit outlining...

## [OPENSOC @ DEF CON 29](https://blog.reconinfosec.com/opensoc-def-con-29)

![{{ picture_of_text }} {{ content.blog_author.display_name }}](https://blog.reconinfosec.com/hubfs/Imported%20images/KelleyWilds.png) 

[Kelley Wilds](https://blog.reconinfosec.com/author/kelley-wilds)

It’s that time of year again - DEF CON! We were thrilled to run OpenSOC again at DEF CON this year,...

## [An Encounter with Ransomeware-as-a-Service: MEGAsync Analysis](https://blog.reconinfosec.com/megasync-analysis)

![{{ picture_of_text }} {{ content.blog_author.display_name }}](https://blog.reconinfosec.com/hubfs/AndrewCook.png) 

[Andrew Cook](https://blog.reconinfosec.com/author/andrew-cook)

Recon's SOC recently responded to an attempted ransomware and extortion attack. It had all the...

[1](https://blog.reconinfosec.com) [2](https://blog.reconinfosec.com/tag/security/page/2) [3](https://blog.reconinfosec.com/tag/security/page/3) <https://blog.reconinfosec.com/tag/security/page/2>

© 2026 All rights reserved. [RSS Feed](https://blog.reconinfosec.com/rss.xml)