Summary
In this chapter, we learned the importance of understanding the threat landscape, with the emergence of new threat actors and how the technical tactics and tools used in cyber attacks have evolved.
Studying the threat landscape is a constant and particularly important activity for an incident response professional and the lack of knowledge will make it more difficult to find the right indicators of compromise when you are responding to a cybersecurity incident.
We also learned how modern technologies bring new risks but also new challenges in responding to incidents.
In the next chapter, we will learn the basic concepts of DFIR, the importance of identifying forensic artifacts as evidence, and some of the most important incident response frameworks.