This week, we’re publishing a new version of this report that’s online and interactive, which includes additional data covering the remainder of 2022, written using Elastic technologies.
Each month, the Elastic Security Labs team dissects a different trend or correlation from the Elastic Global Threat Report. This post provides an overview of those individual publications.
Elastic Security Labs is providing an update to the REF2924 research published in December of 2022. This update includes malware analysis of the implants, additional findings, and associations with other intrusions.
Elastic Security Labs is tracking likely multiple on-net threat actors leveraging Exchange exploits, web shells, and the newly discovered SiestaGraph implant to achieve and maintain access, escalate privilege, and exfiltrate targeted data.
Discover our latest findings & strategic recommendations to better stay informed of potential directions threat actors may focus on.
Elastic Security Labs ist jetzt die offizielle Anlaufstelle für Bedrohungsforschung. Dort können Sie jederzeit Forschungen zu Sicherheitsbedrohungen finden und teilen, um Ihren Arbeitsplatz und die Branche allgemein besser zu schützen.
Elastic is deploying a new malware signature to identify the use of the Follina vulnerability. Learn more in this post.
Provide executive-level details about CVE-2022-22965, a recently-disclosed remote code execution (RCE) vulnerability also known as “Spring4Shell”.