Skip to main content
FreeIntelHub
Feed Threat Feed Search Trending
Intelligence CVE Priority Vulnerability IOC Lookup IOC Feed YARA Rules Phishing Lookup Exploit Lookup Pastes Dark Web
Adversaries Threat Groups Software Campaigns
Explore Dashboard Geo Map Heatmap MITRE ATT&CK
Browse Directory Sources Vendors Categories Sectors
RSS API
FreeIntelHub
/
Sign In

research

20 articles

WeLiveSecurity research Nov 7

The who, where, and how of APT attacks in Q2 2025–Q3 2025

ESET Chief Security Evangelist Tony Anscombe highlights some of the key findings from the latest issue of the ESET APT Activity Report

WeLiveSecurity → Details

WeLiveSecurity research Nov 6

ESET APT Activity Report Q2 2025–Q3 2025

An overview of the activities of selected APT groups investigated and analyzed by ESET Research in Q2 2025 and Q3 2025

WeLiveSecurity → Details

WeLiveSecurity research SAP Nov 5

Sharing is scaring: The WhatsApp scam you didn’t see coming

How a fast-growing scam is tricking WhatsApp users into revealing their most sensitive financial and other data

WeLiveSecurity → Details

Elastic Security Labs research Oct 27

TOR Exit Node Monitoring Overview

Learn how to monitor your enterprise for TOR exit node activity.

Elastic Security Labs → Details

Elastic Security Labs research Qualys Oct 22

Time-to-Patch Metrics: A Survival Analysis Approach Using Qualys and Elastic

In this article, we describe how we applied survival analysis to vulnerability management (VM) data from Qualys VMDR, using the Elastic Stack.

Elastic Security Labs → Details

Elastic Security Labs research Oct 22

TOLLBOOTH: What's yours, IIS mine

REF3927 abuses publicly disclosed ASP.NET machine keys to compromise IIS servers and deploy TOLLBOOTH SEO cloaking modules globally.

1 IOC

Elastic Security Labs → Details

Elastic Security Labs research Intel Oct 14

NightMARE on 0xelm Street, a guided tour

This article describes nightMARE, a python-based library for malware researchers that was developed by Elastic Security Labs to help scale analysis. It descr...

Elastic Security Labs → Details

Elastic Security Labs research Oct 8

What the 2025 Elastic Global Threat Report reveals about the evolving threat landscape

The 2025 Elastic Global Threat Report provides current insights on adversary trends and defender strategies derived from real-world telemetry.

Elastic Security Labs → Details

Elastic Security Labs research Oct 1

WARMCOOKIE One Year Later: New Features and Fresh Insights

A year later: Elastic Security Labs re-examines the WARMCOOKIE backdoor.

Elastic Security Labs → Details

Elastic Security Labs research Linux Sep 30

FlipSwitch: a Novel Syscall Hooking Technique

FlipSwitch offers a fresh look at bypassing Linux kernel defenses, revealing a new technique in the ongoing battle between cyber attackers and defenders.

Elastic Security Labs → Details

Elastic Security Labs research Sep 22

Elastic excels in AV-Comparatives EPR Test 2025: A closer look

Elastic shares results of the 2025 AV Comparatives EPR test

Elastic Security Labs → Details

Elastic Security Labs research Sep 19

MCP Tools: Attack Vectors and Defense Recommendations for Autonomous Agents

This research examines how Model Context Protocol (MCP) tools expand the attack surface for autonomous agents, detailing exploit vectors such as tool poisoni...

Elastic Security Labs → Details

PortSwigger Research research Sep 17

WebSocket Turbo Intruder: Unearthing the WebSocket Goldmine

Many testers and tools give up the moment a protocol upgrade to WebSocket occurs, or only perform shallow analysis.

PortSwigger Research → Details

Elastic Security Labs research Microsoft Linux Sep 4

Investigating a Mysteriously Malformed Authenticode Signature

An in-depth investigation tracing a Windows Authenticode validation failure from vague error codes to undocumented kernel routines.

Elastic Security Labs → Details

PortSwigger Research research Sep 3

Cookie Chaos: How to bypass __Host and __Secure cookie prefixes

Browsers added cookie prefixes to protect your sessions and stop attackers from setting harmful cookies.

PortSwigger Research → Details

PortSwigger Research research Aug 26

Inline Style Exfiltration: leaking data with chained CSS conditionals

I discovered how to use CSS to steal attribute data without selectors and stylesheet imports! This means you can now exploit CSS injection via style attributes!

T1041

PortSwigger Research → Details

PortSwigger Research research Aug 19

Beware the false false-positive: how to distinguish HTTP pipelining from request smuggling

Sometimes people think they've found HTTP request smuggling, when they're actually just observing HTTP keep-alive or pipelining.

PortSwigger Research → Details

Elastic Security Labs research Aug 12

Agentic Frameworks Summary

Agentic systems require security teams to balance autonomy with alignment, ensuring that AI agents can act independently while remaining goal-consistent and ...

Elastic Security Labs → Details

PortSwigger Research research Aug 6

HTTP/1.1 must die: the desync endgame

Abstract Upstream HTTP/1.1 is inherently insecure and regularly exposes millions of websites to hostile takeover.

PortSwigger Research → Details

Elastic Security Labs research Jul 29

MaaS Appeal: An Infostealer Rises From The Ashes

NOVABLIGHT is a NodeJS infostealer developed and sold as a MaaS offering; it is used primarily to steal credentials and compromise cryptowallets.

Elastic Security Labs → Details

«Previous page 1 ... 23 24 25 26 27 ... 37 Next page»
FreeIntelHub · Open-source CTI platform

All articles belong to their respective owners. FreeIntelHub aggregates publicly available RSS feeds for informational purposes only. DMCA