Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

research

20 articles

Elastic Security Labs research Feb 27

Manage your Elastic security stack as code with the Elastic Stack Terraform provider

From detection rules to AI connectors - the latest Terraform provider releases bring security, observability, and ML capabilities to your infrastructure-as-c...

Elastic Security Labs → Details

Google Project Zero research Feb 26

A Deep Dive into the GetProcessHandleFromHwnd API

In my previous blog post I mentioned the GetProcessHandleFromHwnd API. This was an API I didn’t know existed until I found a publicly disclosed UAC bypass us...

T1548

Google Project Zero → Details

Elastic Security Labs research Feb 25

Make The Most of Network Firewall Logs with Elastic Security

Make the most of your firewall logs. In Part 1 of our series, learn how to ingest and parse logs from any firewall with Elastic Agent and use the Network Pag...

Elastic Security Labs → Details

Elastic Security Labs research Intel Feb 24

Beyond Behaviors: AI-Augmented Detection Engineering with ES|QL COMPLETION

Learn how Elastic's ES|QL COMPLETION command brings LLM reasoning directly into detection rules, enabling detection engineers to build intelligent alert tria...

Elastic Security Labs → Details

WeLiveSecurity research Feb 23

Faking it on the phone: How to tell if a voice call is AI or not

Can you believe your ears? Increasingly, the answer is no.

WeLiveSecurity → Details

Elastic Security Labs research Feb 20

MIMICRAT: ClickFix Campaign Delivers Custom RAT via Compromised Legitimate Websites

Elastic Security Labs uncovered a ClickFix campaign using compromised legitimate sites to deliver a five-stage chain ending in MIMICRAT, a custom native C RA...

Elastic Security Labs → Details

Elastic Security Labs research Linux Feb 20

The Immutable Illusion: Pwning Your Kernel with Cloud Files

Threat actors can abuse a class of vulnerabilities to bypass security restrictions and break trust chains.

Elastic Security Labs → Details

WeLiveSecurity research Google Feb 19

PromptSpy ushers in the era of Android threats using GenAI

ESET researchers discover PromptSpy, the first known Android malware to abuse generative AI in its execution flow

WeLiveSecurity → Details

WeLiveSecurity research Feb 19

Is Poshmark safe? How to buy and sell without getting scammed

Like any other marketplace, the social commerce platform has its share of red flags. It pays to know what to look for so you can shop or sell without headaches.

WeLiveSecurity → Details

Elastic Security Labs research Feb 18

Speeding APT Attack Confirmation with Attack Discovery, Workflows, and Agent Builder

This article walks through how Elastic Security's Attack Discovery, combined with Workflows and Agent Builder, can automatically detect, correlate, and confi...

Elastic Security Labs → Details

WeLiveSecurity research Feb 17

Is it OK to let your children post selfies online?

When it comes to our children’s digital lives, prohibition rarely works. It’s our responsibility to help them build a healthy relationship with tech.

WeLiveSecurity → Details

WeLiveSecurity research Feb 12

Naming and shaming: How ransomware groups tighten the screws on victims

When corporate data is exposed on a dedicated leak site, the consequences linger long after the attack fades from the news cycle

WeLiveSecurity → Details

Google Project Zero research Microsoft Feb 12

Bypassing Administrator Protection by Abusing UI Access

In my last blog post I introduced the new Windows feature, Administrator Protection and how it aimed to create a secure boundary for UAC where one didn’t exi...

Google Project Zero → Details

Elastic Security Labs research Microsoft Feb 11

BADIIS to the Bone: New Insights to a Global SEO Poisoning Campaign

In November 2025, Elastic Security Labs observed an intrusion affecting a multinational organization based in Southeast Asia. During the analysis of this act...

Elastic Security Labs → Details

WeLiveSecurity research Feb 10

Taxing times: Top IRS scams to look out for in 2026

It’s time to file your tax return. And cybercriminals are lurking to make an already stressful period even more edgy.

WeLiveSecurity → Details

Elastic Security Labs research Feb 10

SolarWinds Web Help Desk Exploitation - February 2026

Elastic Security detection and prevention capabilities for the recently-disclosed SolarWinds Web Help Desk vulnerabilities.

Elastic Security Labs → Details

Elastic Security Labs research Feb 6

DYNOWIPER: Destructive Malware Targeting Poland's Energy Sector

Learn how Elastic Defend's ransomware protection successfully detects and prevents DYNOWIPER execution using canary file monitoring.

T1529

Elastic Security Labs → Details

PortSwigger Research research Feb 5

Top 10 web hacking techniques of 2025

Welcome to the Top 10 Web Hacking Techniques of 2025, the 19th edition of our annual community-powered effort to identify the most innovative must-read web s...

PortSwigger Research → Details

Elastic Security Labs research Feb 5

Automating GOAD and Live Malware Labs

Stop building labs by hand. Automate the deployment of a fully instrumented Purple Team range using Ludus and Elastic Security.

Elastic Security Labs → Details

WeLiveSecurity research Feb 4

OfferUp scammers are out in force: Here’s what you should know

The mobile marketplace app has a growing number of users, but not all of them are genuine. Watch out for these common scams.

WeLiveSecurity → Details

«Previous page 1 ... 21 22 23 24 25 ... 38 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA