all blogs

Explore our blog

AI SOC

3 min

Analyst firm SACR recognizes Intezer in the AI SOC category

What makes an AI SOC trustworthy? SACR's 2026 research points to evidence, context and verified action. See how Intezer was evaluated.

Zev Schonberg

Company News

4 min

Intezer Workflows. The AI SOC is now complete

Detect, triage, investigate, respond. The entire SOC lifecycle now runs in one platform with AI executing and humans supervising. 

Zev Schonberg

View Topics
SOAR
MDR
AI SOC
Detection Engineering
Threat Hunting
Threat Bulletin
The SecOps Automation Blog
SOC
Research
Malware Analysis
Knowledge Base
Incident Response
Company News
Cloud Security
CISO
Alert Triage
AI
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Reset
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Malware Analysis

3 minutes

Get More Context for Your Analysis with TTPs

You know a file is malicious but what does it do? TTPs in Intezer Analyze are a fast way to understand how malware behaves.

Cloud Security

9 minutes

Do You Really Need Kubernetes?

Kubernetes is one of the top open-source container orchestration projects. See how it compares to Docker Swarm, OpenShift and AWS Lambda.

Cloud Security

2 minutes

Fix your Misconfigured Docker API Ports

Misconfiguration of Docker API ports is one of the most common mistakes companies are making. Fix them in 4 simple steps.

Research

9 minutes

How We Escaped Docker in Azure Functions

New vulnerability could allow an attacker to escalate privileges and escape the Azure Functions Docker container to the Docker host.

Cloud Security

10 minutes

Transitioning Traditional Apps into the Cloud

Traditional apps running on physical servers or VMs can be a pain converting to the cloud. Make the transition without overhauling your entire application stack.

Research

7 minutes

A Rare Look Inside a Cryptojacking Campaign and its Profit

It’s not everyday that we see how profitable a cryptojacking campaign is for an attacker, with access to crypto wallets and their earnings.

Threat Hunting

6 minutes

Proactive Threat Hunting with Intezer

Advanced attacks like the SolarWinds backdoor are on the rise. Assume breach and scan your endpoints in-memory for malicious code.

Research

6 minutes

Operation ElectroRAT: Attacker Creates Fake Companies to Drain Your Crypto Wallets

Extensive campaign already with thousands of victims promotes trojanized applications on cryptocurrency forums and social media.

Research

7 minutes

Early Bird Catches the Worm: New Golang Worm Drops XMRig Miner on Servers

New Golang worm drops XMRig Miner on Windows and Linux servers. Targets public facing services: MySQL, Tomcat, Jenkins and WebLogic.

Cloud Security

3 minutes

Top Linux Cloud Threats of 2020

Year of the Linux threat continued in 2020 with a number of Windows threats launching ELF malware for the first time.

Research

10 minutes

A Zebra in Gopher's Clothing: Russian APT Uses COVID-19 Lures to Deliver Zebrocy

Russian APT28 using COVID-19 vaccine as phishing lures to deliver the Go version of Zebrocy malware.

Cloud Security

5 minutes

Not Another Linux Security Blog

Linux is just as vulnerable as other operating systems.

Research

6 minutes

Stantinko’s Proxy After Your Apache Server

New Stantinko Linux sample posing as a legitimate Apache web server is likely part of a broader campaign that takes advantage of compromised Linux servers.

Cloud Security

3 minutes

CVE-2020-16995: Microsoft Azure Network Watcher Linux Extension EoP

Disclosing a vulnerability in Microsoft Azure's VM extension known as the Network Watcher Agent for Linux.

Cloud Security

3 minutes

Exploiting a Vulnerable Version of Apache Struts

Exploiting the Apache Struts vulnerability used in the Equifax breach of 2017. Disclaimer: This blog post by no means suggests the Apache Struts framework is still vulnerable.