Subscribe to our monthly newsletter: https://securitylabs.datadoghq.com/newsletters/
securitylabs.datadoghq.com/articles/mut...
securitylabs.datadoghq.com/articles/mut...
securitylabs.datadoghq.com/articles/sup...
by Lorenzo Susini, Detection Engineer
securitylabs.datadoghq.com/articles/sup...
by Lorenzo Susini, Detection Engineer
securitylabs.datadoghq.com/newsletters/...
securitylabs.datadoghq.com/newsletters/...
securitylabs.datadoghq.com/articles/cop...
by @siigil.bsky.social
securitylabs.datadoghq.com/articles/cop...
by @siigil.bsky.social
www.datadoghq.com/state-of-clo...
• On AWS, 40% of organizations leverage data perimeters
• 11% of Google Cloud GKE and 23% of Google Cloud VMs are overprivileged
• On Azure, 1.3% of storage containers are public, 58% proactively block public access
www.datadoghq.com/state-of-clo...
• On AWS, 40% of organizations leverage data perimeters
• 11% of Google Cloud GKE and 23% of Google Cloud VMs are overprivileged
• On Azure, 1.3% of storage containers are public, 58% proactively block public access
securitylabs.datadoghq.com/newsletters/...
securitylabs.datadoghq.com/newsletters/...
securitylabs.datadoghq.com/articles/cla...
Zander Mackie
securitylabs.datadoghq.com/articles/cla...
Zander Mackie
securitylabs.datadoghq.com/articles/mcp...
by Santiago Mola
securitylabs.datadoghq.com/articles/mcp...
by Santiago Mola
by @frichetten.com
securitylabs.datadoghq.com/articles/enu...
by @frichetten.com
securitylabs.datadoghq.com/articles/enu...
securitylabs.datadoghq.com/newsletters/...
• Cloud image investigator by @sethsec.bsky.social
• Our top picks for Black Hat / DEF CON
• A benchmark for LLM coding accuracy and security
• Malicious Homebrew installation campaign
.. and more
securitylabs.datadoghq.com/newsletters/...
• Cloud image investigator by @sethsec.bsky.social
• Our top picks for Black Hat / DEF CON
• A benchmark for LLM coding accuracy and security
• Malicious Homebrew installation campaign
.. and more
securitylabs.datadoghq.com/articles/hac...
securitylabs.datadoghq.com/articles/hac...
securitylabs.datadoghq.com/articles/bey...
securitylabs.datadoghq.com/articles/bey...
securitylabs.datadoghq.com/articles/i-s...
by @siigil.bsky.social
securitylabs.datadoghq.com/articles/i-s...
by @siigil.bsky.social
securitylabs.datadoghq.com/articles/kub...
by @mccune.org.uk
securitylabs.datadoghq.com/articles/kub...
by @mccune.org.uk
securitylabs.datadoghq.com/articles/git...
securitylabs.datadoghq.com/articles/git...
Stratus Red Team AWS attack techniques: stratus-red-team.cloud/attack-techn...
Threat Technique Catalog by AWS: aws-samples.github.io/threat-techn...
Stratus Red Team AWS attack techniques: stratus-red-team.cloud/attack-techn...
Threat Technique Catalog by AWS: aws-samples.github.io/threat-techn...
fwdcloudsec.org/conference/n...
@sethsec.bsky.social
@siigil.bsky.social
@gregfoss.com
fwdcloudsec.org/conference/n...
@sethsec.bsky.social
@siigil.bsky.social
@gregfoss.com
securitylabs.datadoghq.com/articles/mut...
(published May 21, 2025)
securitylabs.datadoghq.com/articles/mut...
(published May 21, 2025)
securitylabs.datadoghq.com/articles/tal...
New tactics observed include:
• Persistence-as-a-service with an external facing API Gateway
• Persistence through AWS SSO
• ConsoleLogin events from Telegram IP addresses
securitylabs.datadoghq.com/articles/tal...
New tactics observed include:
• Persistence-as-a-service with an external facing API Gateway
• Persistence through AWS SSO
• ConsoleLogin events from Telegram IP addresses
securitylabs.datadoghq.com/articles/red...
securitylabs.datadoghq.com/articles/red...
Check it out here: openssf.org/blog/2025/03...
Check it out here: openssf.org/blog/2025/03...
securitylabs.datadoghq.com/newsletters/...
• New MITRE ATT&CK coverage matrix in Stratus Red Team
• Compromised GitHub actions
• Malicious Maven packages
• Exploitation of SSRF vulnerabilities on the rise
• ... and more
securitylabs.datadoghq.com/newsletters/...
• New MITRE ATT&CK coverage matrix in Stratus Red Team
• Compromised GitHub actions
• Malicious Maven packages
• Exploitation of SSRF vulnerabilities on the rise
• ... and more