Security Insights

Latest threat analysis, industry news, and security best practices from our expert team.

Has:
detection-engineering404 articles
Sep 8, 2026

Slim Spider Targets Brazilian Financial Institutions: Defending Crypto Custody Keys and Pix Payment Infrastructure

Introduction CrowdStrike has publicly attributed a series of intrusions against Brazilian financial institutions to a previously undocumente...

sigma-rulekql-detectionthreat-hunting
SOC & MDRRead Now
Sep 8, 2026

LOCKBIT5 Ransomware Gang: 4 New Victims Posted to Dark Web Leak Site — Sector Targeting Analysis & Detection Rules

LOCKBIT5 Ransomware Gang: 4 New Victims Posted to Dark Web Leak Site Classification: TLP:CLEAR | Published: 2026-09-08 | Source: ransomware....

darkwebransomware-ganglockbit5
Darkweb RansomwareRead Now
Sep 8, 2026

220 Million Traveler Records Exposed via Default Credentials on Vietnam-Linked APIS Database — Detection and Hardening Guide

What Happened Researchers have disclosed that an Advance Passenger Information System (APIS) database — linked to Vietnam's aviation and bor...

sigma-rulekql-detectionthreat-hunting
Vulnerability ManagementRead Now
Sep 7, 2026

PEEP Post-Compromise Toolkit: Detecting and Removing Malicious Chromium Extensions Injected via Forged Secure Preferences

Introduction Security researchers have disclosed PEEP, a post-compromise toolkit that converts Chrome and Microsoft Edge into covert command...

sigma-rulekql-detectionthreat-hunting
Incident ResponseRead Now
Sep 7, 2026

Help Desk Vishing + AitM Token Theft: Defending Microsoft 365 Against Executive-Targeted Data Theft and Extortion

The Threat: Voice-Based Social Engineering Meets Token Theft Threat hunters have disclosed a widespread data theft and extortion threat clus...

sigma-rulekql-detectionthreat-hunting
Incident ResponseRead Now
Sep 7, 2026

DYSPHOR1A Ransomware: 3 Myanmar Victims in 72 Hours — Government, Finance & Telecom Campaign Analysis with Detection Rules

DYSPHOR1A Ransomware: 3 Myanmar Victims in 72 Hours Classification: TLP:CLEAR | Briefing date: 2026-09-07 | Source: ransomware.live monitori...

darkwebransomware-gangdysphor1a
Darkweb RansomwareRead Now
Sep 7, 2026

IDScan Breach and Class Action Fallout: Defending Driver's License PII Stores Against Bulk Exfiltration

The Breach Is Over. The Litigation — and the Defensive Lesson — Is Just Beginning. Multiple class action lawsuits have now been filed agains...

sigma-rulekql-detectionthreat-hunting
Incident ResponseRead Now
Sep 6, 2026

DSA-6485-1: Tryton ERP Server Security Update — Patching and Detection Guide for Debian Defenders

DSA-6485-1: Tryton ERP Server Security Update — Patching and Detection Guide for Debian Defenders Debian's security team has released DSA-64...

sigma-rulekql-detectionthreat-hunting
Vulnerability ManagementRead Now
Sep 6, 2026

MikroTik RouterOS SSH Exploitation (MikroTrick Chain): Detecting Rogue User "-2" and Emergency Remediation Guide

Your MikroTik Router May Already Be Compromised — Treat It That Way If you run MikroTik RouterOS with SSH (TCP/22) reachable from the intern...

sigma-rulekql-detectionthreat-hunting
Vulnerability ManagementRead Now
Previous
Page 3 of 45
Next