Darktrace Blog Posts
Archive
Todos los blogs
Gracias. Hemos recibido su envío.
¡Ups! Algo salió mal al enviar el formulario.


This blog discusses the emergence of Black Basta, a relatively new ransomware group that was first observed in early 2022. In April 2023, Darktrace detected a case of Black Basta on the customer network and was able to track the ransomware at every stage of the cyber kill chain.
2023
Sep 21, 2023
No se ha encontrado ningún artículo.


This blog investigates the emergence of Lumma Stealer, an information stealer that has recently been observed across the Darktrace fleet. Darktrace’s Self-Learning AI enabled customers to quickly identify affected devices and mitigate the compromise.
2023
Sep 6, 2023
No se ha encontrado ningún artículo.


At Darktrace, we saw that AI could address an existential threat – defending people, businesses and nations from a world of constantly evolving threats. This threat is only poised to grow as AI is increasingly used by attackers. That’s why we became one of the first to apply AI to cyber security and built a completely AI native technology platform aimed at freeing the world of cyber disruption.
2023
Sep 6, 2023
No se ha encontrado ningún artículo.


In mid-April 2023, Darktrace observed two related clusters of attack chains across its customer base. Further investigation revealed these clusters of activity to be related to exploitation of a critical vulnerability in the print management system, PaperCut. This blog details the observed attack chains, and Darktrace’s coverage of the steps involved in them.
2023
Aug 29, 2023
RESPOND


This blog details a malicious actor’s attempt to abuse a customer’s administrative credentials in order to further their compromise on the network. Thanks to its anomaly-based approach to threat detection, Darktrace was the only solution in the customer’s stack to identify and contain the attack.
2023
Aug 17, 2023
No se ha encontrado ningún artículo.


When it comes to responding to an incident, bad timing wastes resources. And traditional incident response strategies make it very hard to get the timing right. With Darktrace HEAL, organizations can now identify and address critical events faster and more efficiently to save security teams time, money, and effort.
2023
Aug 2, 2023
No se ha encontrado ningún artículo.

_11zon.jpg)
With the help of generative AI tools, the barrier to entry is lowered for cyber criminals to create many hyper-realistic emails with minimal errors, which are less likely to contain the low-sophistication markers of a typical phishing attack. This blog outlines how Darktrace/Email used its understanding of ‘normal’ to accurately detect and respond to a sustained phishing campaign targeting a real-life company.
2023
Sep 26, 2023
Email


This blog details how Darktrace detected a case of Business Email Compromise (BEC) on a customer network. Darktrace’s SOC was able to alert the customer to the ongoing compromise within their SaaS environment, thwarting the attack in its tracks.
2023
Jul 18, 2023
DETECT
RESPOND
Proactive Threat Notifications (PTN)


This Darktrace long read investigates how psychological research into the nature of trust relates to our relationship with technology. Because the brain is wired to implicitly trust the devices it uses everyday, humans cannot be relied upon to identify anomalies such as phishing emails. Email security driven by machine augmentation, such as AI anomaly detection, is the clearest solution to tackle that challenge.
2023
Jul 18, 2023
Email


This blog takes a renewed look at the latest campaign activity linked with the notorious Outlaw crypto-mining operation. It discusses Darktrace’s investigation into recent cases of Outlaw, detailing the re-appearance of previously observed tactics, while also discussing the emergence of new ones.
2023
Jul 27, 2023
No se ha encontrado ningún artículo.


This blog discusses Darktrace Threat Research team’s investigation into CryptBot info-stealer infections detected across the customer base between late 2022 and early 2023, and how Darktrace DETECT and RESPOND were able to identify and stop infections within seconds.
2023
Jun 23, 2023
No se ha encontrado ningún artículo.


This blog discusses how Darktrace detected examples of the 3CX supply chain compromise, the first known cascading supply chain compromise. Leveraging integrations with security vendors like CrowdStrike and SentinelOne, Darktrace was able to successfully identify and prevent multiple cases of the 3CX supply chain compromise across its customer base.
2023
Jun 19, 2023
Red