Elastic Global Threat Report Breakdown: Defense Evasion

When we published the Elastic Global Threat Report in 2022, it included threat trends and correlations from our analysis of telemetry data shared by our users. In addition to telling us about how well features work for them, it also represents our visibility of the threat landscape.

About 34% of the techniques we saw were related to defense evasion, which we believe is a direct result of e

Elastic Stack 7.17.9 released

Version 7.17.9 of the Elastic Stack was released today. We recommend you upgrade to this latest version. We recommend 7.17.9 over the previous patch versions in 7.17.x.

The 7.17.9 patch release contains a fix for a potential security vulnerability. Please see our security advisory for more details.

For details of the issues that have been fixed and a

Detecting Lateral Movement activity: A new Kibana integration

Cyber attacks are becoming more frequent, targeted, and complex. When it comes to sophisticated attacks, one of the most commonly seen tactics is Lateral Movement. During lateral movement, many attackers try impersonating a legitimate user by abusing admin tools (e.g., SMB, SAMBA, FTP, WMI, WinRM, and PowerShell Remoting) to move laterally from system to system in search of sensitive information. In addition, they may avoid using traditional malware to stay beneath the security radar, making


Căutare