Globalscape Active Threat ((hot)) -

Unlike traditional antivirus that scans signatures, the Active Threat engine watches . At 3:47 AM, Void succeeded. He logged in as that legacy admin user.

Because the engine didn't just block the IP (which the attacker would change), it allowed the attacker to stay in a sandboxed environment, wasting his time while collecting his TTPs (Tactics, Techniques, and Procedures). globalscape active threat

At 3:14 AM, an attacker—let’s call him "Void"—used a botnet in Vietnam to launch a low-and-slow brute force attack. He wasn't hammering the server; that would trigger alarms. He tried one password every 90 seconds. Globalscape’s Active Threat module, which runs as a real-time policy engine inside EFT, woke up. Unlike traditional antivirus that scans signatures