The level of sophistication associated with this activity requires a heightened level of awareness from organizations in order to detect possible compromises. Organizations that outsource IT infrastructure are recommended to have an open dialogue with their provider and to understand what model they use to manage clients services. The actors behind this activity are leveraging MSPs as conduits in attempts to acquire sensitive client information. No evidence suggests the general public or small to medium enterprises are being targeted. The compromise of one MSP network could offer access to multiple client networks. Ultimately, the client, which could be in the public or private sector, is the likely target.”]
Source: https://cyber.gc.ca/en/alerts/malicious-cyber-activity-targeting-managed-service-providers

