惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
博客园_首页
雷峰网
雷峰网
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
WordPress大学
WordPress大学
腾讯CDC
T
Tailwind CSS Blog
A
About on SuperTechFans
H
Hackread – Cybersecurity News, Data Breaches, AI and More
The GitHub Blog
The GitHub Blog
T
The Blog of Author Tim Ferriss
G
Google Developers Blog
The Cloudflare Blog
D
DataBreaches.Net
Recent Announcements
Recent Announcements
Engineering at Meta
Engineering at Meta
B
Blog
博客园 - 聂微东
阮一峰的网络日志
阮一峰的网络日志
月光博客
月光博客
博客园 - 司徒正美
MongoDB | Blog
MongoDB | Blog
Google DeepMind News
Google DeepMind News
Apple Machine Learning Research
Apple Machine Learning Research

Intel 471 Blog

TeamPCP Supply Chain Attacks Turning Geopolitical Tension into Actionable Intelligence CVE-2025-68613: Zerobot botnet exploits critical vulnerability impacting n8n AI orchestration platform Introducing Cyber Threat Exposure Bundle: A Unified Approach to External Risk CVE-2026-20127: Critical Cisco SD-WAN vulnerability exploited in wild Handala Threat Group OpenClaw: A viral AI assistant and a magnet for infostealer malware and ClickFix trickery Israeli, US strikes against Iran triggers a surge in hacktivist activity CVE-2026-1731: Finding a critical RCE in an age of AI-driven vulnerability research Born to bypass MFA: Taking down Tycoon 2FA The UK Cyber Security Resilience Bill How AI and the human advantage beat tomorrow’s threats Winter Olympics 2026: Hacktivism Surges Ahead of Protests and Suspected Sabotage How Threat Hunting and “Good” Metrics Help The Business Likely fake ransomware operator 0APT causes panic — Our analysis Hunting APTs: from state policy to TTPs CrazyHunter Ransomware DevMan Ransomware Introducing HUNTER Tuning: a New Tool for Driving Behavioral Threat Hunt Detections Battling check fraud in the U.S. Gootloader Malware Update Shai-Hulud Worm 2.0 New FvncBot Android banking trojan targets Poland White Paper Preview: Black "Fraud Day” and Beyond — The Key Cyber Threats Facing the Retail Sector this Holiday Season Threat hunting case study: Detecting IAB activity Using deception to extract cyber threat intelligence Lynx Ransomware Qilin Ransomware Group ClickFix: Tricking users into installing infostealers Cybercrime Takedowns: Trust, Partnerships and Focus
Cyborg Security Releases Free SUNBURST Community Defense ...
Intel 471 · 2021-01-13 · via Intel 471 Blog

Cyborg Security, the pioneer in threat hunting and detection content, has released several free community defense measures (CDM) to assist organizations that may have been impacted by the SUNBURST attack. These measures include free access to the HUNTER platform for organizations that believe they have been affected, as well as free Threat Detection Packages enabling organizations to have ongoing detection capability. The recent attack involving

SolarWinds Orion

demonstrates the risks of supply chain attacks, and the need for organizations to focus on proactive defense like threat hunting. Cyborg Security's CDMs are aimed at assisting organizations of all sizes to effectively detect and respond to the threat using their own security ecosystem. These CDMs follow Cyborg Security's in-depth

public analysis of the SUNBURST implant

. Access to the HUNTER platform will allow organizations to deploy detection content customized to their unique environment for the SUNBURST implant, as well as a wide variety of other advanced behavioural threat hunting content capable of detecting adversaries' actions, not just their tools, in organizations' environments. "The scale and impact of the SolarWinds attack is unprecedented," explained Dave Amsler, Founder and CEO of Cyborg Security. "This attack underscores how relying on traditional reactive security measures is no longer sufficient. This is especially true given that many security controls during the attack were tampered with to render security teams blind to the threat. Instead, organizations must take the fight to the adversary, with threat hunting. HUNTER enables organizations to seamlessly deploy threat hunting and detection packages into their unique environments without costly development or engineering effort. This allows them to detect adversaries' behaviour, malware, and attacks, like SUNBURST and future variants." The HUNTER platform allows organizations to deploy threat hunting and detection packages to their existing SIEM, data lake, and EDR platforms that are tailored to their unique environments. Additionally, every package also includes detailed analysis runbooks and remediations to guide hunters and analysts, as well as cyber threat emulation (CTE) allowing organizations to validate detection capabilities and response processes. Cyborg Security has remained at the forefront of the rapidly evolving SUNBURST attack, providing in-depth analysis, as well as security guidance to our clients, partners, and the broader infosec community. Community Resources include: *

Initial and Ongoing Community Notifications

*

Threat Hunting Deep Dive on the SUNBURST Implant

*

Free Community Defense Measures

Organizations that believe they may have been impacted by SUNBURST can request free access to the HUNTER platform

here

. To have our community defense measures customized to your environment for free, or to receive ongoing intelligence briefings related to SUNBURST, contact

Cyborg Security here

.