all blogs

Explore our blog

AI SOC

AI

Company News

5 minutes

Loop engineering comes to the SOC: Introducing the Intezer Org Brain

Organizational context in an AI SOC is table stakes. Org Brain is very different. It learns, it recalls, it fetches what it's missing, and it gets sharper with every alert it touches, all autonomously.

Itai Tevet

Detection Engineering

AI SOC

8 minutes

Detection engineering in the AI era

AI is lowering the barrier to sophisticated attacks. Explore why detection engineering matters and where most programs fall short.

Zev Schonberg

View Topics
SOAR
MDR
AI SOC
Detection Engineering
Threat Hunting
Threat Bulletin
The SecOps Automation Blog
SOC
Research
Malware Analysis
Knowledge Base
Incident Response
Company News
Cloud Security
CISO
Alert Triage
AI
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Reset
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Malware Analysis

3 minutes

HiddenWasp and the Emergence of Linux-based Threats

Malware with strong evasion techniques do exist within the Linux platform. There is a high ratio of publicly available open-source malware that utilize strong evasion techniques and can be easily adapted by adversaries.

Research

8 minutes

Executable and Linkable Format 101 Part 4: Dynamic Linking

In part four of our ELF 101 blog series, we explain the dynamic linking process, including its purpose, how it works and the different linking modes.

Malware Analysis

4 minutes

Chinese APTs Rising: Key Takeaways from the Intezer Analyze Community in May

Intezer Analyze community detections in May include malware from Chinese threat actor groups APT3, ChinaZ and APT10, and an endpoint infected with Nanocore.

Research

3 minutes

War on the Cloud: Cybercriminals Competing for Cryptocurrency Mining Foothold

The Pacha Group is disabling previously installed cryptominers from other threat groups on the cloud, most notably the Rocke Group, in order to obtain the largest foothold of computing power on the cloud for conducting malicious crypto-mining activities.

Malware Analysis

7 minutes

Meet the Team: Shaul Holtzman

Get to know Intezer Analyze community manager Shaul Holtzman. Shaul is a former cybersecurity analyst helping organizations detect and classify advanced cyber threats.

Incident Response

6 minutes

Fileless Malware: Scanning Endpoint Memory with Genetic Analysis

Memory forensics are crucial for detecting fileless malware. The new Intezer endpoint analysis solution analyzes code in memory to detect advanced threats.

Alert Triage

4 minutes

New! API for the Intezer Analyze Community

Announcing the release of an API for the Intezer Analyze community edition. Members of the free community can now create automation scripts to analyze files without manual intervention. Highlighted in this blog are some of the ways in which community users can utilize the API.

Malware Analysis

4 minutes

What is Genetic Malware Analysis?

Software is evolutionary. Intezer has introduced a new innovative approach to automate malware analysis and provide clear insights into any suspicious file. The company's Genetic Malware Analysis technology empowers security teams to improve and accelerate all stages of their incident response, from the initial alert to the final step of remediation.

Research

2 minutes

Intezer Analyze™ ELF Support Release: Hakai Variant Case Study

We would like to proudly announce that Intezer Analyze™ now supports genetic malware analysis for ELF binaries! You may now upload ELF files to our system and find code reuse. We have already indexed the genes of millions of different files into our ELF genome database, classified into both malicious, trusted, and...

Malware Analysis

4 minutes

Code, Strings and what’s in between

Our technology is based on genetic analysis of files. So far, we’ve focused mainly on detection of code reuse, as part of the genetic malware analysis process.

Research

6 minutes

Mitigating Emotet, The Most Common Banking Trojan

The popular banking trojan Emotet is constantly evolving to evade detection. Stripped down to its genetic core, malware analysis reveals Emotet's code remains largely the same from generation to generation.

Malware Analysis

5 minutes

Product Updates for June 2018

We’ve recently added to our product, support for Dynamic Execution and Static Extraction and we wanted our user interface to reflect these additions.

Research

3 minutes

Digital Certificates- When the Chain of Trust is Broken

As stated in a previous blog entry, it is common for malware authors to sign malicious files with “legitimate” digital certificates in order to bypass security products.

Malware Analysis

8 minutes

Executable and Linkable Format 101 Part 3: Relocations

This post is part of Intezers blog series about executable and linkable formats. In this post, we will introduce the concept of ELF relocations and their relationship with symbols. Later we will explain more advanced concepts, such as dynamic linking.

Malware Analysis

3 minutes

Unpacking reveals a file’s true DNA

After launching Intezer community edition in November 2017, we noticed that many of our users uploaded packed samples. Yet packed files don’t reveal the true ‘DNA’ of the files.