惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

P
Privacy International News Feed
爱范儿
爱范儿
H
Help Net Security
博客园 - 三生石上(FineUI控件)
Engineering at Meta
Engineering at Meta
WordPress大学
WordPress大学
博客园 - 叶小钗
Google DeepMind News
Google DeepMind News
GbyAI
GbyAI
T
Tenable Blog
Project Zero
Project Zero
腾讯CDC
Spread Privacy
Spread Privacy
V
Vulnerabilities – Threatpost
T
Threatpost
CTFtime.org: upcoming CTF events
CTFtime.org: upcoming CTF events
Latest news
Latest news
L
Lohrmann on Cybersecurity
B
Blog RSS Feed
小众软件
小众软件
G
Google Developers Blog
T
Tor Project blog
P
Palo Alto Networks Blog
The Cloudflare Blog
Scott Helme
Scott Helme
D
Darknet – Hacking Tools, Hacker News & Cyber Security
A
Arctic Wolf
博客园 - 聂微东
AWS News Blog
AWS News Blog
L
LINUX DO - 热门话题
Threat Intelligence Blog | Flashpoint
Threat Intelligence Blog | Flashpoint
D
Docker
博客园 - Franky
Know Your Adversary
Know Your Adversary
人人都是产品经理
人人都是产品经理
博客园 - 【当耐特】
P
Privacy & Cybersecurity Law Blog
A
About on SuperTechFans
Cisco Talos Blog
Cisco Talos Blog
奇客Solidot–传递最新科技情报
奇客Solidot–传递最新科技情报
量子位
C
Cisco Blogs
P
Proofpoint News Feed
雷峰网
雷峰网
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
B
Blog
Security Latest
Security Latest
C
Cybersecurity and Infrastructure Security Agency CISA
Jina AI
Jina AI
Y
Y Combinator Blog

Cisco Talos Blog

Don’t swing at everything Chaos ransomware's msaRAT: Living off the browser to build a covert C2 channel Begun, the Patch Wars have The Hunter's Paradox: Is it time to embrace automated threat hunting? UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilities [Video] Where protection starts: Cisco Talos Intelligence Integrations The serpent’s tongue: Luring the Python out of its den WolfSSL, GeoVision, VTK vulnerabilities Winning 54% of the time UAT-7810 continues building ORB networks using new malware Catan and Mouse Martin Lee: Running through the Arctic (and the threat landscape) ARToken: Inside an EvilTokens affiliate panel targeting Microsoft 365 Beyond IOCs: AI-enabled threat intelligence Introduction to COM usage by Windows threats Close Encounters of the Human Kind Scripting the disassembler: Local agentic reverse engineering through vbdec’s live COM object model A tale of two eras Microsoft Patch Tuesday for June 2026 — Snort rules and prominent vulnerabilities Reporting from Vegas: Networking, AI, and good boys Winning the cyber marathon with Tony Giandomenico Hypotheses, telemetry, and human judgment: Inside Cisco Talos Threat Hunting Less panic patching, more precision DICOM, Pydicom, GDCM, and Orthanc: A technical tour of what really happens in the heap MediaArea heap-based buffer overflow vulnerabilities Introducing EvidenceForge: Synthetic security logs that don’t look (as) fake The art of being ungovernable TP-Link, Photoshop, OpenVPN, Norton VPN vulnerabilities From PDB strings to MaaS: Tracking a commodity BadIIS ecosystem used by Chinese-speaking threat The time of much patching is coming Ongoing exploitation of Cisco Catalyst SD-WAN vulnerabilities Breaking things to keep them safe with Philippe Laulheret Microsoft Patch Tuesday for May 2026 — Snort rules and prominent vulnerabilities State-sponsored actors, better known as the friends you don’t want Unplug your way to better code Insights into the clustering and reuse of phone numbers in scam emails UAT-8302 and its box full of malware
Preview: Cisco Talos at Black Hat USA 2026
Hazel Burton · 2026-07-23 · via Cisco Talos Blog

We’re looking forward to having some great conversations with those of you heading to the desert for Hacker Summer Camp 2026. We have a presence within the Cisco and Splunk booth (2633) during Black Hat where you can chat to us about our latest threat research, incident response, and how Talos powers the Cisco portfolio with our intelligence.

Or, feel free to pretend to want to talk to us about those things while grabbing a new multicolored Snorty. That’s fine, too.

Here’s some of the ways we’ll be showing up at Black Hat, alongside our friends at Cisco and Splunk: 

Meet the researchers: Booth lightning talks 

Our Talosians have spent a lot of time over the last few months putting together some truly... well, enlightening lightning talks. Throughout Wednesday and Thursday at Black Hat, you can expect to see such topics as:

  • Threat actor prompting and the emerging ways adversaries are using prompts, agents, skills, and tools to improve efficiency
  • Warlock ransomware, and why this group does not fit neatly into a simple RaaS or state-linked label.
  • Zero trust for agent identity
  • Building a "second brain" for your second brain
  • Predicting cybersecurity fraud
  • Vulnerability discovery trends
  • ... and much more

Lightning talks are 15 minutes. That’s less than 9% of The Odyssey. Don’t worry, we cut the bit where everyone gets turned into Snorty pigs.

Main Stage keynote: Security at agentic scale

Date/Time: Wednesday, August 5 | 11:30 a.m. – 12:00 p.m. (Main Stage, Business Hall)

Cisco's David Dalling and Rick Miles will be giving a Main Stage keynote all about protecting the enterprise in the age of AI agents.

As AI agents become increasingly capable (and increasingly privileged) inside enterprise environments, organizations face an entirely new set of security challenges. Drawing on research from across Cisco, the talk will explore what it takes to secure organizations as autonomous systems become part of everyday business operations.

Talos workshop: When AI finds vulnerabilities faster than humans can patch 

Date/Time: Wednesday, August 5 | 1:30 p.m. – 3:00 p.m. (Oceanside E, Level 2)

If you're looking for something hands-on and interactive, don't miss our workshop with Talos’ Nick Biasini and Cisco’s Omar Santos. In two parts, they’ll demonstrate practical ways security teams can incorporate AI into SOC workflows to identify sophisticated adversary behavior.

In Part 1, Omar will discuss the Foundry Security Spec. He’ll walk through how to deploy, build testing harnesses around its core agent roles, and integrate Project CodeGuard so that findings from autonomous testing can be converted into reusable secure-coding rules and future prevention. 

In Part 2, Nick will demonstrate how Talos leverages AI to transform threat hunting. We will explore best practices for identifying adversarial AI tactics and provide attendees with insights into how Cisco Talos is leveraging AI for defense. Participants will learn how to integrate these defensive AI strategies into their own SOC workflows.  

Splunk workshop: When agents become insider threats 

Date/Time: Wednesday, August 5 | 10:15 a.m. – 11:00 a.m. (Mandalay Bay I)

The Splunk workshop considers the fact that the next insider threat may not be a person; it may be an autonomous agent using valid credentials and delegated authority. 

Attendees will see real-world attack paths in which agents move sensitive data across tools, distribute brute-force attempts under a single delegation, and manipulate internal systems without triggering traditional SIEM or UEBA alerts. 

It was Talos all along

One of the questions we hear often is: "How do I buy Talos?"

The answer… is that you probably already did.

Throughout the Cisco booth you'll see our “It was Talos all along” campaign, highlighting the fact that Talos isn't a standalone product or a threat intelligence feed you bolt onto your security stack. Talos is already embedded across the Cisco security portfolio, which continually benefits from our threat research and intelligence.

To build your curiosity, take a look at our new video, “Where Protection Starts,” to see how Cisco Talos Intelligence Integrations help reduce uncertainty in the SOC:

See you in Las Vegas.