Le Lézard
Classified in: Science and technology
Subjects: Conference, Product/Service, Trade Show

Expel Unveils Threat Research and Cloud Detection, Response and Remediation Capabilities and Resources


Expel, the managed security provider that aims to make security easy to understand, use and improve, today unveiled new threat research and cloud detection, response and remediation resources at Black Hat USA 2022.

"As defenders, we need to use every advantage we have. One of those is all of us being part of a defense community, sharing knowledge?about threats, vulnerabilities, defensive strategies?to better protect each other," said Dave Merkel, CEO and co-founder of Expel. "I hope our threat intel and cloud security resources are useful to both our customers and the cybersecurity community at large."

Quarterly Threat Report?Q2 2022. The Expel Quarterly Threat Report (QTR) showcases the established and emerging trends and incidents the Expel security operations center (SOC) team observed across customer environments. The SOC team gathers its findings through investigations into alerts, email submissions, and hunting leads and threats from the second quarter of 2022 (April 1 to June 30). A thorough analysis of incidents identifies patterns and trends to help guide strategic decision-making and operational processes.

Some key takeaways from the QTR include:

The QTR also outlines recent findings in business email compromise (BEC), business application compromise (BAC), phishing, and cloud security incidents, among others topic areas. Download the QTR for Q2 2022 here.

MITRE ATT&CK in Google Cloud Platform: A defender's cheat sheet. As threat actors increasingly operate in the cloud, the Expel SOC team observes their activity and strategies to share information to educate defenders. The MITRE ATT&CK guide for Google Cloud Platform (GCP) contains a breakdown of the tactics the Expel SOC team sees attackers use most often during attacks in GCP. The guide also includes best practices for investigating incidents, and helps inform organizations' GCP alert triage, and incident response to quickly remediate issues. Lastly, this cheat sheet includes a "mind map" that lays out the relationship between MITRE ATT&CK tactics, GCP services, and API calls to help security teams better understand how threat actors execute attacks. To learn more and download the defender's cheat sheet for MITRE ATT&CK in GCP, visit this page.

Expel Cloud Detection and Response. Expel ingests events and log data from GCP, Amazon Web Services (AWS), and Azure and enriches it with customer-specific context such as the type of environment (e.g., production, development) or user (e.g., admin) to hone detection based on risk and expected behaviors. Expel layers on the detections, ingesting security signal from cloud-native services and writing custom detections tailored to each cloud provided from the logs in the cloud admin control plane. Expel's cloud infrastructure strategy is focused on catching misconfigurations, suspicious logins and unusual admin activity, like resource sharing.

To download the defender's cheat sheet for MITRE ATT&CK in AWS, visit this page. To build a detection and response strategy in Azure, download Expel's Azure Guidebook here.

To learn more about Expel's managed detection and response (MDR), remediation, phishing, and threat hunting capabilities at Black Hat, visit booth 2861, August 10 and 11, or book a meeting or schedule a demo.

About Expel

Expel helps companies of all shapes and sizes minimize business risk. Our technology and people work together to make sense of security signals?with your business in mind?to detect, understand, and fix issues fast. Expel offers managed detection and response (MDR), remediation, phishing, and threat hunting. For more information, visit our website, check out our blog, or follow us on LinkedIn or Twitter.


These press releases may also interest you

25 avr 2024
The Industrial Technology Research Institute (ITRI) convened the 2024 ITRI Net Zero Day in Taipei, accelerating industry's transition to net-zero emissions. The event highlighted key innovations and successful business cases, focusing on the...

25 avr 2024
The report titled "Identity Governance & Administration Market by Component (Services, Solution), Modules (Access Certification & Compliance Control, Access Management, Identity Lifecycle Management), Organization Size, Deployment, Vertical - Global...

25 avr 2024
The report titled "Contract Research Organization Services Market by Type (Clinical Research Services, Consulting Services, Data Management Services), Trial Phase (Phase I, Phase II, Phase III), Therapeutic Area, Molecule Type, End-User - Global...

25 avr 2024
Bristow Group Inc. , the global leader in innovative and sustainable vertical flight solutions, today announced it will release its first quarter 2024 financial results and selected financial outlook for 2025 and 2026 after market close on Tuesday,...

25 avr 2024
AIDS Healthcare Foundation applauds the government of Colombia for issuing a compulsory license on HIV drug dolutegravir, which will allow the country to access affordable generic versions of the treatment as an alternative to the costly branded...

25 avr 2024
SUNRATE, an intelligent global payment and treasury management platform has been named one of the Top 100 Cross-Border Payment Companies for 2024 by FXC Intelligence, which recognises and celebrates the most important players in the cross-border...



News published on and distributed by: