all blogs

Explore our blog

AI SOC

AI

Company News

5 minutes

Loop engineering comes to the SOC: Introducing the Intezer Org Brain

Organizational context in an AI SOC is table stakes. Org Brain is very different. It learns, it recalls, it fetches what it's missing, and it gets sharper with every alert it touches, all autonomously.

Itai Tevet

Detection Engineering

AI SOC

8 minutes

Detection engineering in the AI era

AI is lowering the barrier to sophisticated attacks. Explore why detection engineering matters and where most programs fall short.

Zev Schonberg

View Topics
SOAR
MDR
AI SOC
Detection Engineering
Threat Hunting
Threat Bulletin
The SecOps Automation Blog
SOC
Research
Malware Analysis
Knowledge Base
Incident Response
Company News
Cloud Security
CISO
Alert Triage
AI
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Reset
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Cloud Security

3 minutes

Exploiting a Vulnerable Version of Apache Struts

Exploiting the Apache Struts vulnerability used in the Equifax breach of 2017. Disclaimer: This blog post by no means suggests the Apache Struts framework is still vulnerable.

Cloud Security

8 minutes

Migrating to the Cloud: Compliance Issues When Transitioning from a Traditional Data Center

Your business is responsible for compliance and security, even if you outsource part of it. You should prepare to do the hard work of verifying a cloud offering’s security and compliance components rather than taking them at face value.

Cloud Security

9 minutes

Are Containers More Secure Than VMs?

Containers offer their own unique technical challenges when it comes to security, but VMs present a broad attack surface. In this article, we explore some of the key security advantages and disadvantages that each platform offers.

Malware Analysis

2 minutes

New Threat Intel Features in Intezer Analyze

From classifying samples faster to staying current on trending malware families, check out the latest DFIR and threat intel features in Intezer Analyze.

Cloud Security

6 minutes

Kud I Enter Your Server? New Vulnerabilities in Microsoft Azure

It's not every day you hear about vulnerabilities in Cloud providers. Researchers at Intezer disclosed two security flaws in Microsoft's popular cloud service: Azure App Services.

Malware Analysis

5 minutes

Emotet Evolves but Code Remains Mostly the Same

The popular banking trojan Emotet is constantly evolving to evade detection. Stripped down to its genetic core reveals Emotet's code remains largely the same from generation to generation.

Cloud Security

4 minutes

Looking Back on the Last Decade of Linux APT Attacks

Looking back on the previous decade of Linux APT attacks to get a better understanding of the trends that might shape the current decade.

Malware Analysis

21 minutes

ELF Malware Analysis 101 Part 2: Initial Analysis

In this article we will pursue ELF file analysis with an emphasis on static analysis. The purpose of initial analysis is to gather as many insights about a file as possible without spending too much time on advanced analysis techniques.

Cloud Security

7 minutes

What is Zero Trust Execution? Definition, Adoption & More

Zero Trust Execution is a security approach that allows only pre-approved code to run in your cloud servers. It has become the industry recommended practice for securing cloud workloads.

Malware Analysis

4 minutes

Accelerate Memory Forensics with Intezer Analyze

Accelerate the memory dump analysis process using the Volatility memory forensics framework and the Intezer Analyze CLI.

Cloud Security

8 minutes

Best Practices for Securing a Kubernetes Environment

Developing a new product with the help of a leading technology such as Kubernetes is a major investment. But without proper security measures in place, all that hard work can go to waste.

Malware Analysis

1 minute

Community Ghidra Plugin is Here

Accelerate reverse engineering with the Intezer Analyze Ghidra plugin. Get the plugin from our GitHub repository.

Malware Analysis

2 minutes

Detect Malware Associated with the Most Exploited CVEs

Last month, the US-CERT urged IT security professionals to patch the most common vulnerabilities exploited by foreign cyber actors from 2016 to 2019.

Malware Analysis

1 minute

IDA Pro Plugin Now Available to the Community

Accelerate reverse engineering by enriching every function of disassembled machine code with info about where the code was seen previously.

Cloud Security

6 minutes

Best Practices for Securing a Docker Runtime Environment

This article lays out a checklist of Docker security best practices, starting with the development phase, continuing on to deployment, and finally the runtime environment.