Threat Research​

  • Fuzzer-V

    Fuzzer-V

    TL;DR An overview of a fuzzing project targeting the Hyper-V VSPs using Intel Processor Trace (IPT) for code coverage guided fuzzing, built upon WinAFL, winipt, HAFL1, and Microsoft’s IPT.sys....

    Read Article
  • CyberArk Named a Leader in the 2023 Gartner® Magic Quadrant™ for Privileged Access Management – again.

    View the Report
  • Assessing the Attack on Okta’s Support Unit Mitigate Your Risk with Six Steps and New CyberArk HAR Tool28:07

    Assessing the Attack on Okta’s Support Unit Mitigate Your Risk with Six Steps and New CyberArk HAR Tool

    CyberArk's Khizar Sultan and Andy Thompson deconstruct the Okta breach and share strategies you can take to mitigate the risks of identity attacks.

    Watch Video
  • Anatomy of the MGM Hack: A CyberArk Labs Perspective46:01

    Anatomy of the MGM Hack: A CyberArk Labs Perspective

    CyberArk's resident experts, Khizar Sultan and Andy Thompson, examine the root causes and lessons learned from the MGM Resorts attack.

    Watch Video
  • The MGM Resorts Attack: Initial Analysis

    The MGM Resorts Attack: Initial Analysis

    The recent cyberattack on MGM Resorts International has raised serious concerns about the security of sensitive data and the vulnerabilities organizations face in today’s digital landscape. In...

    Read Article
  • NVMe: New Vulnerabilities Made Easy

    NVMe: New Vulnerabilities Made Easy

    As vulnerability researchers, our primary mission is to find as many vulnerabilities as possible with the highest severity as possible. Finding vulnerabilities is usually challenging. But could...

    Read Article
  • Fantastic Rootkits: And Where To Find Them (Part 3) – ARM Edition

    Fantastic Rootkits: And Where To Find Them (Part 3) – ARM Edition

    Introduction In this blog, we will discuss innovative rootkit techniques on a non-traditional architecture, Windows 11 on ARM64. In the prior posts, we covered rootkit techniques applied to a...

    Read Article
  • A Deep Dive into Penetration Testing of macOS Applications (Part 2)

    A Deep Dive into Penetration Testing of macOS Applications (Part 2)

    Introduction This is the second part of the “A Deep Dive into Penetration Testing of macOS Application” blog series. In the first part, we learned about macOS applications and their structure and...

    Read Article
  • A Deep Dive into Penetration Testing of macOS Applications (Part 1)

    A Deep Dive into Penetration Testing of macOS Applications (Part 1)

    Introduction As many of us know, there are a lot of guides and information on penetration testing applications on Windows and Linux. Unfortunately, a step-by-step guide doesn’t exist in the macOS...

    Read Article
  • IMPACT 2023 Panel - Measure and Deliver Value with Identity Security51:29

    IMPACT 2023 Panel - Measure and Deliver Value with Identity Security

    Join Accenture, Deloitte, PwC and KPMG on this panel during IMPACT 2023, CyberArk's annual customer and industry conference, around measure and deliver value with Identity Security.

    Watch Video
  • CyberArk 2023 Identity Security Threat Landscape Infographic

    CyberArk 2023 Identity Security Threat Landscape Infographic

    Identity-led cybersecurity exposure is on the rise.

    Read More
  • CyberArk 2023 Identity Security Threat Landscape Report

    CyberArk 2023 Identity Security Threat Landscape Report

    AI Tool Use, Employee Churn and Economic Pressures Fuel the Identity Attack Surface

    Read More
  • Analyzing 3 Offensive AI Attack Scenarios

    Analyzing 3 Offensive AI Attack Scenarios

    Artificial intelligence (AI) is transforming modern society at unprecedented speed. It can do your homework, help you make better investment decisions, turn your selfie into a Renaissance painting...

    Read Article
  • How Dark Web Credentials Lead to a Software Supply Chain Attack55:51

    How Dark Web Credentials Lead to a Software Supply Chain Attack

    2023 Attack and Defend Virtual Series Session One

    Watch Video
  • How to Write a PoC for an Uninitialized Smart Contract Vulnerability in BadgerDAO Using Foundry

    How to Write a PoC for an Uninitialized Smart Contract Vulnerability in BadgerDAO Using Foundry

    TL;DR In this post, we’re going to learn how Foundry can be used to write a proof of concept (PoC) for uninitialized smart contract vulnerabilities. We will take a look at and exploit a simple...

    Read Article
  • White Phoenix: Beating Intermittent Encryption

    White Phoenix: Beating Intermittent Encryption

    Recently, a new trend has emerged in the world of ransomware: intermittent encryption, the partial encryption of targeted files. Many ransomware groups, such as BlackCat and Play, have adopted...

    Read Article
  • Fantastic Rootkits and Where to Find Them (Part 2)

    Fantastic Rootkits and Where to Find Them (Part 2)

    Know Your Enemy In the previous post (Part 1), we covered several rootkit technique implementations. Now we will focus on kernel rootkit analysis, looking at two case studies of rootkits found in...

    Read Article
  • Breaking Docker Named Pipes SYSTEMatically: Docker Desktop Privilege Escalation – Part 2

    Breaking Docker Named Pipes SYSTEMatically: Docker Desktop Privilege Escalation – Part 2

    In the previous blog post, we described how the Docker research started and showed how we could gain a full privilege escalation through a vulnerability in Docker Desktop. In this follow-up blog...

    Read Article
  • GovFocus How To Resist Ransomware31:48

    GovFocus How To Resist Ransomware

    Hear from federal cyber leaders at the DOD and CyberArk about the best tips, tricks and strategies for resisting ransomware and protecting federal data.

    Watch Video
  • The (Not so) Secret War on Discord

    The (Not so) Secret War on Discord

    CyberArk Malware Research Team Abstract CyberArk Labs discovered a new malware called Vare that is distributed over the popular chatting service, Discord. Vare has been used to target new malware...

    Read Article
  • Quantum Computing Is Coming… Here are 4 Ways to Get Ready

    Quantum Computing Is Coming… Here are 4 Ways to Get Ready

    Ask a cybersecurity professional what keeps them up at night and you’ll get answers about insufficient staffing, IT complexity or constant attacks on their business. Quantum computing isn’t likely...

    Read Article
  • loading
    Loading More...