• Platform
    • Threat Detection Marketplace Your Home for Threat Detection
    • Attack Detective Industry-First SaaS for Advanced Threat Hunting
    • Uncoder AI Single IDE for Detection Engineering
    • DetectFlow Data pipeline for routing detections
  • Ecosystem
  • Use Cases
    • Fortify SIEM Posture Audit your SIEM posture to maximize threat visibility & address detection coverage gaps.
    • Obtain Rules for Alerting Get prioritized SIEM use cases ready-to-deploy as low-noise and high-value alerts.
    • Advance Threat Detection Access the world’s largest rule feed for emerging threats, manage & deploy detections at scale.
    • Elevate Detection Engineering Save time and costs, obtain CTI-enriched use cases, adapt CI/CD workflows.
    • Accelerate MDR Services Reduce customer churn, address technical debt in threat detection, and save on SIEM costs.
    • Hyperscale SIEM Migration Accelerate time-to-value and maximize the ROI of your SIEM migration project.
  • Services
    • Professional Services Overview Explore our on-demand services and training.
    • MITRE ATT&CK Audit Minimize blind spots and ensure comprehensive data visibility.
    • Custom Content Engineering Adopt out-of-the-box detection engineering capability to identify threats challenging your business.
    • SIEM Migration Services Accelerate time-to-value and maximize the ROI of your SIEM migration project.
  • Resources
    • Blog Research, guides, interviews
    • Events Stay tuned to our cybersecurity events
    • Data Sheets Explore our data sheets for detailed insights
    • Active Threats Get detection code and simulations
    • Customer Success Stories Learn how global organizations trust SOC Prime
    • Detection as Code Explore our latest innovation reports
    • Roota Open-Source Language for Collective Cyber Defence
    • Sigma History of Sigma Evolution
    • Industry Expertise
    • Center of Excellence for Microsoft Sentinel
    • Center of Excellence for Amazon Web Services
    • Splunk Migration & Support
    • Tools
    • Uncoder.IO
    • The Prime Hunt browser extension:
      Chrome
      Firefox
      Edge
  • Company
    • Why SOC Prime? Collective cyber defense for a secure tomorrow
    • About Us Our story and mission
    • Industry Recognition Verified value for cybersecurity
    • Leadership Biography and DNA
    • Careers Job opportunities at SOC Prime
    • Privacy SOC Prime’s privacy-centric mindset
    • SOC 2 Type II Compliance Benchmark for security compliance
    • Partner Programs for Universities Sigma & MITRE ATT&CK® Education
  • Log In
  • View intelligence
View intelligence
  • View intelligence

BlueAlpha攻撃検出:ロシア関連のハッカー集団がCloudflareトンネルを悪用してGammaDropマルウェアを拡散

Posted on 06.12.202420.06.2025 by Daryna Olyniychuk

ロシアの国家支援による脅威&#1245 […]

Posted in ブログ, 最新の脅威Tagged Armageddon, BlueAlpha, Gamaredon, GammaDrop, Hive-0051, Malware, Sigma, SOC Prime Platform, UAC-0010

OpenSearchインスタンス間のダッシュボード移行

Posted on 06.12.202425.06.2025 by Rosty H.

ある OpenSearch インスタンスから別の&# […]

Posted in ナレッジビット, ブログTagged OpenSearch

RevC2とVenom Loader検出:MaaSを介した洗練された攻撃で大規模展開された新しいマルウェアの検出

Posted on 05.12.202420.06.2025 by Veronika Zahorulko

新しい日は、サイバー防御者&#1239 […]

Posted in ブログ, 最新の脅威Tagged Cyberattack, Detection Content, Malware, Sigma, SOC Prime Platform, Threat Detection Marketplace, Threat Hunting Content

SmokeLoader マルウェア検出:悪名高いローダーが台湾の企業を再び標的に

Posted on 03.12.202420.06.2025 by Veronika Zahorulko

悪意のある SmokeLoader マルウェア は、 […]

Posted in ブログ, 最新の脅威Tagged Cyberattack, Detection Content, Malware, Sigma, SOC Prime Platform, Threat Detection Marketplace, Threat Hunting Content

AWS WAF Web ACL構成の最終確認

Posted on 02.12.202425.06.2025 by Comrade H.

この記事で提案されているル&#1254 […]

Posted in ナレッジビット, ブログTagged AWS, WAF

HATVIBEおよびCHERRYSPYマルウェア検出:TAG-110 aka UAC-0063によるアジアおよびヨーロッパの組織を標的としたサイバースパイキャンペーン

Posted on 29.11.202420.06.2025 by Veronika Zahorulko

ウクライナでの 本格的な戦争&#123 […]

Posted in ブログ, 最新の脅威Tagged Cyberattack, Detection Content, Malware, Sigma, SOC Prime Platform, Threat Detection Marketplace, Threat Hunting Content

AWS WAF: カスタム文字列マッチルールの作成

Posted on 29.11.202425.06.2025 by Comrade H.

まず、[ルールの追加]に移動し&#12 […]

Posted in ナレッジビット, ブログTagged AWS, WAF

Elasticにおけるビルディングブロックルールの活用

Posted on 27.11.202425.06.2025 by Adam Swan

Elasticの「ルールについて」セク&#12471 […]

Posted in ナレッジビット, ブログTagged Elastic, Knowledge Bits, SIEM

BlackSuitランサムウェアの検出: Ignoble Scorpiusが攻撃をエスカレートし、世界中の90以上の組織を標的に

Posted on 25.11.202420.06.2025 by Daryna Olyniychuk

昨年、Royalランサムウェアの後継& […]

Posted in ブログ, 最新の脅威Tagged BlackSuit, Cyberattack, Detection Content, Ignoble Scorpius, Malware, Ransomware, Sigma

BianLian ランサムウェア検出: AA23-136A 共同サイバーセキュリティ勧告 BianLian オペレーターが使用する TTP に関する詳細を継続的な悪意のあるキャンペーンについて

Posted on 22.11.202420.06.2025 by Daryna Olyniychuk

イランに関連するハッカー集&#2224 […]

Posted in ブログ, 最新の脅威Tagged AA23-136A, BianLian, CISA, Cyberattack, Detection Content, Malware, Ransomware, Sigma

Posts navigation

← Older posts
Newer posts →
  • Platform
  • Threat Detection Marketplace
  • Attack Detective
  • Uncoder AI
  • DetectFlow
  • Ecosystem
  • Use Cases
  • Fortify SIEM Posture
  • Obtain Rules for Alerting
  • Advance Threat Detection
  • Elevate Detection Engineering
  • Accelerate MDR Services
  • Hyperscale SIEM Migration
  • Services
  • Professional Services Overview
  • MITRE ATT&CK Audit
  • Custom Content Engineering
  • SIEM Migration Services
  • Industry Expertise
  • Center of Excellence for Microsoft Sentinel
  • Center of Excellence for Amazon Web Services
  • Splunk Migration & Support
  • Tools
  • Uncoder.IO
  • The Prime Hunt for:
  • Chrome Firefox Edge
  • Resources
  • Blog
  • Events
  • Data Sheets
  • Active Threats
  • Customer Success Stories
  • Detection as Code
  • Roota
  • Sigma
  • Company
  • Why SOC Prime?
  • About Us
  • Industry Recognition
  • Leadership
  • Careers
  • Privacy
  • SOC 2 Type II Compliance
  • Partner Programs for Universities
  • Change consent settings
  • Cookie Policy
  • Privacy Policy
  • LEGAL NOTICE (IMPRESSUM)
  • SOC PRIME PLATFORM TERMS OF SERVICE
  • Privacy FAQ
Engage WIth Us
  • discord
  • github
  • youtube
  • linkedin
  • facebook
  • twitter
  • bluesky

SOC Prime, SOC Prime Logo and Threat Detection Marketplace are registered trademarks of SOC Prime, Inc. All other trademarks are the property of their respective owners.