all blogs

Explore our blog

AI SOC

3 min

Analyst firm SACR recognizes Intezer in the AI SOC category

What makes an AI SOC trustworthy? SACR's 2026 research points to evidence, context and verified action. See how Intezer was evaluated.

Zev Schonberg

Company News

4 min

Intezer Workflows. The AI SOC is now complete

Detect, triage, investigate, respond. The entire SOC lifecycle now runs in one platform with AI executing and humans supervising. 

Zev Schonberg

View Topics
SOAR
MDR
AI SOC
Detection Engineering
Threat Hunting
Threat Bulletin
The SecOps Automation Blog
SOC
Research
Malware Analysis
Knowledge Base
Incident Response
Company News
Cloud Security
CISO
Alert Triage
AI
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Reset
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Malware Analysis

2 minutes

Detect Malware Associated with the Most Exploited CVEs

Last month, the US-CERT urged IT security professionals to patch the most common vulnerabilities exploited by foreign cyber actors from 2016 to 2019.

Malware Analysis

1 minute

IDA Pro Plugin Now Available to the Community

Accelerate reverse engineering by enriching every function of disassembled machine code with info about where the code was seen previously.

Cloud Security

6 minutes

Best Practices for Securing a Docker Runtime Environment

This article lays out a checklist of Docker security best practices, starting with the development phase, continuing on to deployment, and finally the runtime environment.

Malware Analysis

8 minutes

ELF Malware Analysis 101: Linux Threats No Longer an Afterthought

Practice ELF malware analysis hands-on. Attackers have targeted the Linux OS aggressively in recent years.

Malware Analysis

2 minutes

Mapping Binaries Inside a Microsoft Azure Cloud Server

This interactive map allows you to explore the code sharing relationship between all binary files in a standard Azure Ubuntu cloud server.

Research

6 minutes

The Evolution of APT15’s Codebase 2020

The Ke3chang group continues to alter its code and substitute basic functionalities in its backdoors.

Cloud Security

3 minutes

Exploitation of SaltStack Vulnerabilities Signals Increase in Cloud Server Attacks

The recent exploitation of SaltStack vulnerabilities signals an increase in cloud server attacks.

Research

5 minutes

Kaiji: New Chinese Linux malware turning to Golang

Kaiji—a new Chinese malware targeting servers and IoT devices with a custom implant—is part of a greater threat actor migration to Golang.

Malware Analysis

1 minute

Intezer Analyze community roundup

Maze ransomware and APT41 highlight this month's community samples. Join the free Intezer Analyze community to detect malicious software in seconds.

Malware Analysis

2 minutes

Malicious APKs share code during Covid-19 pandemic

-1331

Cloud Security

4 minutes

Pre-runtime vulnerability scans or runtime protection: Which is better for your IaaS security?

Under Armour’s famous slogan sums up the mission perfectly: We Must Protect this House. But how do security teams protect their Infrastructure as a Service (IaaS) while acknowledging the cloud has unique performance needs?

Research

2 minutes

TTPs matrix for Linux cloud servers

Taking inspiration from the MITRE ATT&CK® framework, we have developed a matrix categorizing adversary tactics and techniques for Linux cloud servers.

Incident Response

2 minutes

Search for revealing strings in Intezer Analyze

Accelerate your file investigations with new and improved string reuse capabilities in Intezer Analyze

Research

7 minutes

Fantastic payloads and where we find them

One of the most common anti-analysis tricks seen in today’s Windows malware is the use of packers. Packers often complicate the analysis and detection of binary files by hiding the malware’s real code and data; often referred to as the payload.

Malware Analysis

5 minutes

Evasion Techniques Dissected: A Mirai Case Study

To explain how code reuse analysis is different from signature-based detection approaches, let’s take a look at four Mirai samples which were recently uploaded to VirusTotal.