all blogs

Explore our blog

AI SOC

AI

Company News

5 minutes

Loop engineering comes to the SOC: Introducing the Intezer Org Brain

Organizational context in an AI SOC is table stakes. Org Brain is very different. It learns, it recalls, it fetches what it's missing, and it gets sharper with every alert it touches, all autonomously.

Itai Tevet

Detection Engineering

AI SOC

8 minutes

Detection engineering in the AI era

AI is lowering the barrier to sophisticated attacks. Explore why detection engineering matters and where most programs fall short.

Zev Schonberg

View Topics
SOAR
MDR
AI SOC
Detection Engineering
Threat Hunting
Threat Bulletin
The SecOps Automation Blog
SOC
Research
Malware Analysis
Knowledge Base
Incident Response
Company News
Cloud Security
CISO
Alert Triage
AI
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Reset
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Malware Analysis

8 minutes

Executable and Linkable Format 101. Part 2: Symbols

In our previous post, we focused on understanding the relationship between sections and segments, which serve as the foundation for understanding the ELF file format.

Research

6 minutes

Executable and Linkable Format 101 - Part 1 Sections and Segments

Let's dive into Executable and Linkable Format files. Learn about ELF relocation and segments, and how cyber attacks can use this file format.

Alert Triage

4 minutes

False Positive Madness: Reducing the Burden of Time-Wasting Alerts

Security teams have a lot of noise and false positives to deal with in their day-to-day jobs. Every organization is managing thousands of alerts each month.

Incident Response

3 minutes

Cyber Threat Diversion: Managing the False Positive Madness

Security teams have a lot of noise to deal with in their day-to-day jobs. Every organization is managing thousands of alerts each month — and that’s in an ideal scenario. Some are dealing with this volume on a daily basis, making it nearly impossible to stay ahead of possible threats.

Malware Analysis

5 minutes

Meet the Founders: Alon Cohen

Serial entrepreneur Alon Cohen co-founded and grew one of the world’s first cyber security startups, CyberArk, which eventually became a ‘unicorn’.

Research

4 minutes

North Korea and Iran Use CodeProject to Develop Their Malware

In the software development world, engineers frequently use ready-made code for various tasks, whether it involves copying a snippet from Stack Overflow, taking a library from Github, or reusing a company’s own rich, legacy code base.

Malware Analysis

5 minutes

Intezer Community Tip: How to Optimize ssdeep Comparisons with ElasticSearch

Using ssdeep to find similarities between files can be quite effective when employing the right optimization methods

Malware Analysis

6 minutes

About the Founders: Meet CEO Itai Tevet

Itai Tevet was the self-described ‘PC kid’ whose fascination with technology led to a strong interest in information security–an interest that benefited him as he grew into increasingly more responsible cyber security leadership roles within the Israeli Defense Forces (IDF).

Incident Response

6 minutes

Why Identifying ‘Good or Bad’ is Not Enough

Not performing a deeper analysis after the initial infection prevents us from performing an effective remediation to the actual problem.

Incident Response

5 minutes

Without a Trace: The Dangers of Fileless Malware

Every day, wars are being waged on invisible battlefields. The enemy is hiding and stealthily leveling its attacks from within.

Incident Response

3 minutes

Introducing Cybersecurity DNA: the Intezer Company Blog

Have you ever searched for a needle in a haystack? In the world of cyber security, it might be that one problematic section or piece of code. Detecting cyber attacks certainly matters, but diagnosing them is also critically important.