Field notes from the edge.
What our engineers learned this week. Hands-on technical deep-dives, postmortems, and strategy frameworks.
AIRethinking MDR as Attackers and Defenders Embrace AI
Traditional managed detection and response (MDR) services, which emerged to address security staffing shortages and 24/7 monitoring challenges, are becoming inadequate as attackers increasingly leverage AI to accelerate and scale their operations. The MDR model that worked effectively for the past decade is struggling to adapt to the rapidly evolving threat landscape where AI-powered attacks move
AIAI Phishing Is Crushing SOCs with Alert Volume: How to Reduce Tier 1 Overload
AI-powered phishing campaigns are generating unprecedented volumes of sophisticated attacks, overwhelming Security Operations Center (SOC) Tier 1 analysts with alert fatigue. Attackers leverage AI to rapidly produce convincing phishing emails and fake login pages at scale, creating massive review queues that increase the risk of critical threats slipping through undetected. Organizations must adop
AIAttackers Use AI to Automate EDR Evasion Testing
Threat actors are leveraging AI-powered Python scripts to systematically test and evade detection by major endpoint detection and response (EDR) solutions. The automated testing specifically targeted EDR agents from leading security vendors including Sophos, CrowdStrike, and Windows Defender, enabling attackers to refine malware before deployment.
