
Special Report - Quadrant Security
Breaking Badness
00:00
Is MDR a Managed Detection and Response (MDR)?
MDR is managed detection and response. It's an open source piece of software that I started developing in 2009 called Sagin, which you can find on GitHub. And then we help mitigate by being able to communicate with clients, firewalls or their endpoints to help stop and mitigate threats. So what the Quackpot is, is it's a handy tool for your thread actors. It works as a backdoor. Immediately this thing started calling out to command and control servers or C2 domains. After a short time, I was able to download a second stage, which was later to be determined as a brute tell from an IP in Russia. Later while we were going through the logs
Transcript
Play full episode