View Topics

Malware Analysis
2 minutes
Detect Malware Associated with the Most Exploited CVEs
Last month, the US-CERT urged IT security professionals to patch the most common vulnerabilities exploited by foreign cyber actors from 2016 to 2019.

Malware Analysis
1 minute
IDA Pro Plugin Now Available to the Community
Accelerate reverse engineering by enriching every function of disassembled machine code with info about where the code was seen previously.

Cloud Security
6 minutes
Best Practices for Securing a Docker Runtime Environment
This article lays out a checklist of Docker security best practices, starting with the development phase, continuing on to deployment, and finally the runtime environment.

Malware Analysis
8 minutes
ELF Malware Analysis 101: Linux Threats No Longer an Afterthought
Practice ELF malware analysis hands-on. Attackers have targeted the Linux OS aggressively in recent years.

Malware Analysis
2 minutes
Mapping Binaries Inside a Microsoft Azure Cloud Server
This interactive map allows you to explore the code sharing relationship between all binary files in a standard Azure Ubuntu cloud server.

Research
6 minutes
The Evolution of APT15’s Codebase 2020
The Ke3chang group continues to alter its code and substitute basic functionalities in its backdoors.

Cloud Security
3 minutes
Exploitation of SaltStack Vulnerabilities Signals Increase in Cloud Server Attacks
The recent exploitation of SaltStack vulnerabilities signals an increase in cloud server attacks.

Research
5 minutes
Kaiji: New Chinese Linux malware turning to Golang
Kaiji—a new Chinese malware targeting servers and IoT devices with a custom implant—is part of a greater threat actor migration to Golang.

Malware Analysis
1 minute
Intezer Analyze community roundup
Maze ransomware and APT41 highlight this month's community samples. Join the free Intezer Analyze community to detect malicious software in seconds.

Cloud Security
4 minutes
Pre-runtime vulnerability scans or runtime protection: Which is better for your IaaS security?
Under Armour’s famous slogan sums up the mission perfectly: We Must Protect this House. But how do security teams protect their Infrastructure as a Service (IaaS) while acknowledging the cloud has unique performance needs?

Research
2 minutes
TTPs matrix for Linux cloud servers
Taking inspiration from the MITRE ATT&CK® framework, we have developed a matrix categorizing adversary tactics and techniques for Linux cloud servers.

Incident Response
2 minutes
Search for revealing strings in Intezer Analyze
Accelerate your file investigations with new and improved string reuse capabilities in Intezer Analyze

Research
7 minutes
Fantastic payloads and where we find them
One of the most common anti-analysis tricks seen in today’s Windows malware is the use of packers. Packers often complicate the analysis and detection of binary files by hiding the malware’s real code and data; often referred to as the payload.




