John Mancini

John Mancini

Product Management

John Mancini leads the product management of machine learning-based threat detection algorithms at Vectra. He is a product-driven technologist with extensive experience research, development and design of software backed by machine learning and AI. Previously, John held the position of lead data scientist and received a patent for an improved method, system, and computer program product for identifying malicious payload exchanges which may be associated with payload injection or root-kit magic key usage.

Posts from

John Mancini

Untitled Goose Tool Takes Flight: Azure AD and M365 Account Compromises
April 6, 2023
|
By
John Mancini
Untitled Goose Tool Takes Flight: Azure AD and M365 Account Compromises

Recently, CISA released a new open-source tool named the Untitled Goose Tool that helps organizations investigate threats to Azure AD, M365 and Azure.

Read More
Controlling Cyberattacks with PowerShell Shouldn't Mean Moving on Without it
June 24, 2022
|
By
John Mancini
Controlling Cyberattacks with PowerShell Shouldn't Mean Moving on Without it

Cybersecurity authorities from the United States, New Zealand, and the United Kingdom have released a joint Cybersecurity Information Sheet (CIS) that recommends proper configuration and monitoring of PowerShell to address the recurrence of the scripting language's use in cyberattacks.

Read More
MITRE ATT&CK Coverage: Vectra AI provides over 90%
April 27, 2022
|
By
John Mancini
MITRE ATT&CK Coverage: Vectra AI provides over 90%

The MITRE ATT&ACK framework helps to keep your business secure. Learn how Vectra leverages MITRE ATT&CK and supports MITRE D3FEND.

Read More
Azure AD: Users Are Bypassing Your MFA
April 19, 2022
|
By
John Mancini
Azure AD: Users Are Bypassing Your MFA

In order to help security teams validate the effectiveness of their Azure AD security controls and stop future attacks, the Vectra platform continuously monitors user activity and reveals instances of users bypassing multi-factor authentication (MFA) and other preventative controls.

Read More
Azure AD Attackers Beware—Vectra Sees You
May 6, 2021
|
By
John Mancini
Azure AD Attackers Beware—Vectra Sees You

The Vectra Cognito Azure AD Privilege Anomaly Detection is a radical step forward when detecting account takeover events targeting Azure AD to gain access to mission-critical SaaS applications. With it, teams are alerted, and attacks can be stopped before they cause harm.

Read More
Hafnium Attack Exploits On-premise Microsoft Exchange Servers
March 4, 2021
|
By
John Mancini
Hafnium Attack Exploits On-premise Microsoft Exchange Servers

The Hafnium campaign is targeting Microsoft Exchange Servers by leveraging several zero-day exploits and allows attackers to bypass authentication, including MFA to access e-mail accounts. Read more about hot to detect and stop the attack with Vectra Cognito.

Read More
Plain and Simple: You Need Detection Coverage for Azure AD
February 4, 2021
|
By
John Mancini
Plain and Simple: You Need Detection Coverage for Azure AD

As witnessed by the SolarWinds attack, compromising a single Azure AD account gives an attacker access to multiple SaaS apps, including Microsoft Office 365. This single point has made it critical for organizations to be able to detect and respond to attacks from Azure AD.

Read More
Vectra Threat Intelligence: The Icing on the Cake
August 6, 2020
|
By
John Mancini
Vectra Threat Intelligence: The Icing on the Cake

AI-based detections are great at identifying attacker behaviors while threat intelligence provides fast, labeled coverage of known threats. Adding threat intelligence extends the coverage of AI-based detections to give you the most durable coverage and early understanding of threats.

Read More