• Platform
    • Threat Detection Marketplace Your Home for Threat Detection
    • Attack Detective Industry-First SaaS for Advanced Threat Hunting
    • Uncoder AI Single IDE for Detection Engineering
    • DetectFlow Data pipeline for routing detections
  • Ecosystem
  • Use Cases
    • Fortify SIEM Posture Audit your SIEM posture to maximize threat visibility & address detection coverage gaps.
    • Obtain Rules for Alerting Get prioritized SIEM use cases ready-to-deploy as low-noise and high-value alerts.
    • Advance Threat Detection Access the world’s largest rule feed for emerging threats, manage & deploy detections at scale.
    • Elevate Detection Engineering Save time and costs, obtain CTI-enriched use cases, adapt CI/CD workflows.
    • Accelerate MDR Services Reduce customer churn, address technical debt in threat detection, and save on SIEM costs.
    • Hyperscale SIEM Migration Accelerate time-to-value and maximize the ROI of your SIEM migration project.
  • Services
    • Professional Services Overview Explore our on-demand services and training.
    • MITRE ATT&CK Audit Minimize blind spots and ensure comprehensive data visibility.
    • Custom Content Engineering Adopt out-of-the-box detection engineering capability to identify threats challenging your business.
    • SIEM Migration Services Accelerate time-to-value and maximize the ROI of your SIEM migration project.
  • Resources
    • Blog Research, guides, interviews
    • Events Stay tuned to our cybersecurity events
    • Data Sheets Explore our data sheets for detailed insights
    • Active Threats Get detection code and simulations
    • Customer Success Stories Learn how global organizations trust SOC Prime
    • Detection as Code Explore our latest innovation reports
    • Roota Open-Source Language for Collective Cyber Defence
    • Sigma History of Sigma Evolution
    • Industry Expertise
    • Center of Excellence for Microsoft Sentinel
    • Center of Excellence for Amazon Web Services
    • Splunk Migration & Support
    • Tools
    • Uncoder.IO
    • The Prime Hunt browser extension:
      Chrome
      Firefox
      Edge
  • Company
    • Why SOC Prime? Collective cyber defense for a secure tomorrow
    • About Us Our story and mission
    • Industry Recognition Verified value for cybersecurity
    • Leadership Biography and DNA
    • Careers Job opportunities at SOC Prime
    • Privacy SOC Prime’s privacy-centric mindset
    • SOC 2 Type II Compliance Benchmark for security compliance
    • Partner Programs for Universities Sigma & MITRE ATT&CK® Education
  • Log In
  • View intelligence
View intelligence
  • View intelligence

CyberLock、Lucky_Gh0$t、Numeroの検出:ハッカーが偽のAIツールインストーラーを武器化してランサムウェアやマルウェア攻撃を実施

Posted on 03.06.202525.06.2025 by Veronika Zahorulko

As GenAI サイバーセキュリティにお&#123 […]

Posted in ブログ, 最新の脅威Tagged CyberLock, Lucky_Gh0$t, Malware, numero, Numero Malware, Ransomware

APT41攻撃の検知:中国ハッカーがGoogleカレンダーを悪用し、政府機関を標的にしたTOUGHPROGRESSマルウェアを配信

Posted on 30.05.202523.06.2025 by Daryna Olyniychuk

脅威アクターは、正常で正当&#1239 […]

Posted in ブログ, 最新の脅威Tagged APT, APT41, Chinese APT Actors

BadSuccessorの検出: 重大なWindows Serverの脆弱性がActive Directory内の任意のユーザーを危険にさらす可能性

Posted on 27.05.202519.06.2025 by Veronika Zahorulko

CVE-2025-4427とCVE-2025-4428の公開に続いて 、Ivanti EPMM […]

Posted in ブログ, 最新の脅威Tagged Active Directory, BadSuccessor, Vulnerability

Uncoder AIでのSentinelOneのIOCからクエリへの変換

Posted on 27.05.202523.07.2025 by Steven Edwards

その仕組み1. 脅威レポートから&#1 […]

Posted in SOCプライムプラットフォーム, ブログTagged IOC detection, SentinelOne detection, Uncoder AI

Uncoder AIによるMicrosoft SentinelのIOCクエリ生成

Posted on 23.05.202523.07.2025 by Steven Edwards

仕組み1. 脅威レポートからのIOC解 […]

Posted in SOCプライムプラットフォーム, ブログTagged KQL, Microsoft Sentinel, Uncoder AI

Uncoder AIによるGoogle SecOps (Chronicle)のIOCからクエリ生成

Posted on 23.05.202523.07.2025 by Steven Edwards

その仕組み1. 脅威レポートから&#1 […]

Posted in SOCプライムプラットフォーム, ブログTagged Chronicle UDM, Google SecOps, Uncoder AI

APT28攻撃を検出:ロシアGRU 26156部隊、西側の物流と技術企業を狙いウクライナへの支援を協調する2年間のハッキングキャンペーン

Posted on 22.05.202525.06.2025 by Veronika Zahorulko

協調された 勧告 北米、ヨーロ&#12 […]

Posted in ブログ, 最新の脅威Tagged AA25-141A, APT, APT28, CISA, CISA Alert, Fancy Bear, GRU Unit 26165

ELPACO-Team Ransomware Attack Detection: Hackers Exploit Atlassian Confluence Vulnerability (CVE-2023-22527) to Gain RDP Access and Enable RCE

Posted on 20.05.202519.06.2025 by Veronika Zahorulko

今日の急速に進化するランサ&#1251 […]

Posted in ブログ, 最新の脅威Tagged CVE, CVE-2023-22527, ELPACO-team ransomware, Ransomware, RCE, Vulnerability

CVE-2025-4427およびCVE-2025-4428検出:RCEにつながるIvanti EPMMエクスプロイトチェーン

Posted on 19.05.202525.06.2025 by Veronika Zahorulko

CVE-2025-31324の公開に続いて、 SAP NetWeaverで認&# […]

Posted in ブログ, 最新の脅威Tagged CVE, CVE-2025-4427, CVE-2025-4428, RCE, Vulnerability

中国APTグループによるCVE-2025-31324の脆弱性を利用した重要インフラ攻撃の検知

Posted on 16.05.202525.06.2025 by Daryna Olyniychuk

新たに明らかになったSAP NetWeaverの重& […]

Posted in ブログ, 最新の脅威Tagged CVE, CVE-2025-31324, PlugX, RCE, Zero-Day

Posts navigation

← Older posts
Newer posts →
  • Platform
  • Threat Detection Marketplace
  • Attack Detective
  • Uncoder AI
  • DetectFlow
  • Ecosystem
  • Use Cases
  • Fortify SIEM Posture
  • Obtain Rules for Alerting
  • Advance Threat Detection
  • Elevate Detection Engineering
  • Accelerate MDR Services
  • Hyperscale SIEM Migration
  • Services
  • Professional Services Overview
  • MITRE ATT&CK Audit
  • Custom Content Engineering
  • SIEM Migration Services
  • Industry Expertise
  • Center of Excellence for Microsoft Sentinel
  • Center of Excellence for Amazon Web Services
  • Splunk Migration & Support
  • Tools
  • Uncoder.IO
  • The Prime Hunt for:
  • Chrome Firefox Edge
  • Resources
  • Blog
  • Events
  • Data Sheets
  • Active Threats
  • Customer Success Stories
  • Detection as Code
  • Roota
  • Sigma
  • Company
  • Why SOC Prime?
  • About Us
  • Industry Recognition
  • Leadership
  • Careers
  • Privacy
  • SOC 2 Type II Compliance
  • Partner Programs for Universities
  • Change consent settings
  • Cookie Policy
  • Privacy Policy
  • LEGAL NOTICE (IMPRESSUM)
  • SOC PRIME PLATFORM TERMS OF SERVICE
  • Privacy FAQ
Engage WIth Us
  • discord
  • github
  • youtube
  • linkedin
  • facebook
  • twitter
  • bluesky

SOC Prime, SOC Prime Logo and Threat Detection Marketplace are registered trademarks of SOC Prime, Inc. All other trademarks are the property of their respective owners.