CISA Red Team Tests Expose a Divide in How Security Teams Respond to Intrusions
At one critical infrastructure organization, CISA’s red team got in and kept going. It compromised multiple workstations, elevated its privileges over the domain and began moving laterally into other systems and resources. The security operations center never detected it.
