Russia’s GRU is engaging in old-school brute-force hacking to gain credentials from their targets but with a modern twist of employing Kubernetes software containers to perform the attacks at scale. They use leaked credentials as well as password-guessing methods to steal the credentials in order to move throughout the target to steal information. The GRU attackers are also dropping exploits of two older and patched Microsoft Server vulnerabilities to dig deeper into the targeted networks. The NSA and CISA issued a rare alert together that warns of widespread brute force attacks.”]

