DeepSeas analysts identified an unspecified threat actor conducting post-compromise activities in an Architecture and Engineering industry customer environment. The targeted system was a domain controller that did not have an EDR agent installed. The DeepSeas SOC detected the creation of a file on an adjacent system that did have an EDR agent and successfully contained [...]