Mandiant—Mandiant exposed major state-sponsored cyber threats including Russia's Sandworm attacks on critical water infrastructure
In 2023-2024, Mandiant's 500+ threat intelligence analysts across 22 countries uncovered tactics of sophisticated state-sponsored groups: Russia's APT29, North Korea's 3CX supply chain attack, and Russia's Sandworm group breaching water infrastructure. Mandiant also exposed a critical vulnerability in Microsoft's Azure Kubernetes Service. Named a Leader in Forrester Wave for External Threat Intelligence, receiving the highest possible score in 15 of 29 criteria. The M-Trends 2024 report showed global median intrusion dwell time dropped to 10 days in 2023 from 16 days in 2022, indicating improved defensive capabilities.
Scoring Impact
| Topic | Direction | Relevance | Contribution |
|---|---|---|---|
| Data Security | +toward | primary | +1.00 |
| Overall incident score = | +0.885 | ||
Score = avg(topic contributions) × significance (high ×1.5) × confidence (0.59)
Evidence (1 signal)
Mandiant M-Trends 2024 report showed global intrusion detection dwell time dropped to 10 days from 16
Mandiant's M-Trends 2024 report revealed global median dwell time dropped to 10 days in 2023 (from 16 in 2022), with Asia-Pacific seeing the most dramatic improvement from 33 to 9 days. The company was recognized as a Leader in Forrester Wave for External Threat Intelligence.