Over Security

Over Security

35917 bookmarks
Custom sorting
Navigating DORA: How Sekoia can support your compliance journey
Navigating DORA: How Sekoia can support your compliance journey
Explore the key aspects of DORA and how Sekoia.io assists organisations in achieving compliance through cyber threat intelligence for crisis exercises and cyberattack simulations.
·sekoia.com·
Navigating DORA: How Sekoia can support your compliance journey
PolarEdge Backdoor on QNAP: CVE-2023-20118 Analysis
PolarEdge Backdoor on QNAP: CVE-2023-20118 Analysis
Deep technical analysis of a TLS C2 implant on QNAP exploiting CVE-2023-20118—protocol, anti-analysis, fingerprinting, IoCs & YARA
·sekoia.com·
PolarEdge Backdoor on QNAP: CVE-2023-20118 Analysis
Sekoia at NATO CCDCOE's Crossed Swords 2025 Exercise
Sekoia at NATO CCDCOE's Crossed Swords 2025 Exercise
Sekoia.io delivered its technology and expertise to the NATO CCDCOE’s Crossed Swords 2025 (XS25) exercise to gather critical insights and validate our defensive capabilities in a military-grade environment.
·sekoia.com·
Sekoia at NATO CCDCOE's Crossed Swords 2025 Exercise
OysterLoader Unmasked: The Multi-Stage Evasion Loader
OysterLoader Unmasked: The Multi-Stage Evasion Loader
Unmasking OysterLoader's evasion: from API hammering to custom LZMA. Explore the 4-stage infection chain and its ties to Rhysida ransomware.
·sekoia.com·
OysterLoader Unmasked: The Multi-Stage Evasion Loader
Shadow IT: The Initial Access You Didn’t Log
Shadow IT: The Initial Access You Didn’t Log
Shadow IT isn’t just governance debt, it’s an attacker’s beachhead. This post explores real intrusions where forgotten assets, rogue tenants, exposed cloud storage, and abandoned domains enabled initial access, and why closing visibility gaps is now a core SOC capability.
·sekoia.com·
Shadow IT: The Initial Access You Didn’t Log
Silver Fox: The only Tax Audit Where Fine Print Installs Malware
Silver Fox: The only Tax Audit Where Fine Print Installs Malware
Track the 2025-2026 shift of China-based Silver Fox from financial crime to APT espionage. Discover how they exploit tax-themed phishing and RMM tools to target South Asian entities.
·sekoia.com·
Silver Fox: The only Tax Audit Where Fine Print Installs Malware
UEBA vs. Stealth Intrusions: Catching Identity & Credential Abuse
UEBA vs. Stealth Intrusions: Catching Identity & Credential Abuse
Traditional SOC rules miss attacks using valid accounts and MFA fatigue. Learn real-world cases where UEBA detects stealthy lateral movement, OAuth abuse, and cloud console misuse.
·sekoia.com·
UEBA vs. Stealth Intrusions: Catching Identity & Credential Abuse