Threat Hunter Intelligence Report

Security Adam Swanda

L ooking for trouble? We can help.

Welcome to Splunk’s Threat Hunter Intelligence Report — a monthly series brought to you by Splunk’s threat hunting and intelligence (THI) team. We research and produce actionable reports on the latest cybersecurity threats and trends — helping organizations stay one step ahead of adversaries, one report at a time.

Sign up now to receive monthly reports on critical cybersecurity topics, including:

Missed an update? We’ve got you covered. Check out each month’s report and expert analysis below, published the first Tuesday of every month.

Malware

Cybersecurity Laws & Regulation

Data Breaches

Emerging Threats

E-Crime

Related Articles

Little Code, Big Impact: Easily Scale your Security Automation with Splunk SOAR
Security
1 Minute Read

Little Code, Big Impact: Easily Scale your Security Automation with Splunk SOAR

Discover how our latest revision of Splunk Phantom’s 'custom functions' make playbook creation and execution faster and easier than ever with the ability to create shareable custom code across playbooks while introducing complex data objects into the playbook execution path.
From Prompt to Payload: LAMEHUG’s LLM-Driven Cyber Intrusion
Security
10 Minute Read

From Prompt to Payload: LAMEHUG’s LLM-Driven Cyber Intrusion

The Splunk Threat Research Team analyzes the LAMEHUG malware, examining its tactics and techniques to provide insights that can help SOC analysts and blue teamers identify and respond.
Kaseya, Sera. What REvil Shall Encrypt, Shall Encrypt
Security
19 Minute Read

Kaseya, Sera. What REvil Shall Encrypt, Shall Encrypt

Kaseya VSA, remote monitoring management (RMM) software heavily used by managed service providers (MSP), was compromised by REvil, and is being used to distribute ransomware to its on-premises customers. Find out more on how to detect REvil in your environment.