AIM: Building an Agentic Tier-2 SOC Analyst at Cisco Live AMER 2026
Why we built it Over the first couple of days in the SOC at Cisco Live Americas 2026, we did what every new junior analyst does: we picked up incidents,…
Why we built it Over the first couple of days in the SOC at Cisco Live Americas 2026, we did what every new junior analyst does: we picked up incidents,…
For the latest discoveries in cyber research for the week of 18th May, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Vodafone, a major international telecom, has sustained a…
More AI, more software, more bugs! AI, it’s all you hear about nowadays and everyone’s got an opinion on it. Here at Metasploit, we care less about those opinions and…
Malware: ACR Stealer, AdaptixC2, Amatera, AMOS, Arkei, Atomic macOS Stealer, Atomic Stealer, BIGMACHO, BlackByte, bw1.js, CanisterSprawl, CanisterWorm, CHROMEPUSH, CipherForce, Clawdbot, DEEPBREATH, Donut, donut_injector, DonutLoader, Everbe 2.0, Everest, GhostSocks, hackerbot-claw, Havoc,…
Executive Summary Cato CTRL has discovered a vishing-based delivery technique used against an Italy-based consumer services company associated with PhantomBackdoor, a multi-stage WebSocket-based backdoor previously reported in a Ukraine-focused spear…
A keynote is about to start. Thousands of people are opening apps, joining sessions, checking schedules, scanning badges, and expecting the digital layer around the event to simply work. If…
Key Findings The Iranian, IRGC affiliated, threat actor Nimbus Manticore resurfaced during Operation Epic Fury, the US military campaign against Iran launched on February 28, 2026, demonstrating newly adopted techniques and enhanced…
If your organization operates in the EU, or works with organizations that do, NIS2 is no longer something on the horizon. It is here and it applies to a far…
Malware: fast16, FIRESTARTER, GoGra, Graphon, Mini Shai-Hulud, Ransomware Evil, REvil, Sha1-Hulud: The Second Coming, Shai-Hulud, Shai-Hulud 2.0, Shai-Hulud 3.0, Sodinokibi, WanaCrypt0r 2.0, WannaCry, WannaCrypt, WCry CVEs: CVE-2016-5195, CVE-2022-0847, CVE-2026-31431, CVE-2026-43284,…
Executive Summary Cato researchers have discovered a new indirect prompt injection exploit pattern workflow in BrowserOS (an open-source agentic AI browser). We named it “WebPromptTrap” because the prompt originates from…