From ingesting 30+ intel sources to executing autonomous queries, discover how @SofectaLabs uses AI Agents to slash dwell times and protect your environment 24/7.
The future of MDR is here: https://t.co/6AARjdPKxl
Elastic Security is more than a SIEM. After achieving a 100% protection rate in the latest @AV_Comparatives test, it reaffirms that Elastic Security is proving to be a powerhouse in XDR. Discover how it detects and stops advanced threats: https://t.co/idv4brJbSF
SIEM alone isn't enough. At SofectaLabs, we combine AI, EDR, OSquery & expert analysis to detect hidden threats before they strike. Stay ahead of attackers!
https://t.co/bAbvT6vS8P
#CyberSecurity#ThreatHunting#MDR#SIEM#SOC#ThreatIntelligence
EML attachments are a clever way to bypass traditional analysis because they automatically get rendered and embedded in the original message, without user interaction, by most mail clients:
https://t.co/89vpok3qqW
h/t @amitchell516
Upgrade now! Elastic 8.15 includes enhancements in semantic search, new OTel collector distribution, AI-driven SIEM data onboarding, LLM integrations, and more.
Learn more → https://t.co/UGeQtWLRdH
Upgrade now! Elastic 8.14 includes the GA of Elasticsearch Query Language (ES|QL), improvements in vector search, new AI-driven Attack Discovery for security, and more.
Learn more → https://t.co/X4KOU1AOD6
Elastic Security was awarded a perfect score in @AV_Comparatives' latest Malware Protection Test, underscoring our commitment to protecting to our users from evolving threats. Learn more about the independent assessment here: https://t.co/IzoTteFdMi
#malware
Email is a primary cyber attack vector with rising phishing and BEC threats. Secure your organization with robust email security, SOC, and MDR services.
https://t.co/isKscX9NUo
#cybersecurity#email#attacksurface#secure
Detections as Code (DaC) is transforming security rule management, and we’re making it easier to kick-start your own DaC process. Check out our latest enhancements and comprehensive guide for adopting DaC: https://t.co/hdKKB65ia0
@sublime_sec Awesome news from @sublime_sec and the funding!
Get in touch with us to get enrolled with the best email protection there is! We'll do the work, you'll enjoy a nice and clean mailbox protected from BEC and other email threats!
https://t.co/9NAC7FclHx
The recent discovery of the XZ backdoor into Linux systems has caused quite a stir. See our detailed breakdown of CVE-2024-3094 and the protections we’ve created in this new article from @SBousseaden, @stryker0x, and @JakeKing: https://t.co/LlxYPhNCPA
#ElasticSecurityLabs
Sublime Core & Enterprise users: next time you access the flagged messages alert queue, you’ll see an updated interface to expedite your triage actions and investigation workflow.
Not sure when the AnyDesk signing cert was compromised, and if that’s the only thing that happened.
This checks if you have AnyDesk binaries signed a week before the cert was revoked or later.
1/2
Sublime has observed credential phishing actors leveraging legitimate Dropbox infrastructure to deliver malicious links.
In this sample, the actors also leverage a known callback phishing technique - Geek Squad impersonation (via a lookalike "GeekSupport" to avoid detection) - in an attempt to bolster legitimacy.