News

Cloud SEK
cloudsek. com > blog > inside-the-fortibleed-open-directory-a-technical-analysis-of-what-the-attacker-left-behind

Inside the Forti Bleed Open Directory: A Technical Analysis of What the Attacker Left Behind

3+ hour, 49+ min ago  (790+ words) Cloud SEK's threat intelligence team is tracking Forti Bleed, an active, large-scale credential-compromise campaign targeting internet-facing Fortinet Forti Gate firewalls and SSL VPN gateways worldwide. Despite the name, Forti Bleed is not a software vulnerability and is not linked to…...

Symbols: cwe-24,cwe-78
Cloud SEK
cloudsek. com > ar > ancmt > cloudsek-and-incloud-partner-to-expand-ai-native-cyber-intelligence-in-brazil

Cloud SEK and In Cloud Partner to Expand AI-Native Cyber Intelligence in Brazil

2+ day, 14+ hour ago  (447+ words) S'o Paulo " Cloud SEK, an AI-native predictive cyber intelligence platform, has announced a strategic partnership with In Cloud, a Brazilian managed security services provider, to expand access to predictive threat intelligence and digital risk protection across Brazil. Cloud SEK helps…...

Symbols: btc-usd,nasdaq:chkp
Cloud SEK
cloudsek. com > knowledge-base > from-alerts-to-attack-paths

From Alerts to Attack Paths: Why Correlation Beats Alert Volume

4+ day, 11+ hour ago  (981+ words) Alert correlation links related security alerts into a single attack path, the route an attacker takes from entry to target. Correlation beats cutting alert volume because it surfaces the few real attacks hidden inside thousands of disconnected alerts. The cost…...

Symbols: btc-usd
Cloud SEK
cloudsek. com > ar > knowledge-base > ai-threat-intelligence

AI Threat Intelligence: What It Is, How It Works, and Why It Matters

2+ week, 2+ day ago  (799+ words) This guide explains what AI threat intelligence is, how it works, what it detects, and how security teams can implement it effectively. AI threat intelligence is a cybersecurity approach that uses artificial intelligence, machine learning, and automated analysis to identify,…...

Symbols: d05.S0,u11.S0,z74.S0,m03.S0,blz.si,575.S0
Google News
cloudsek. com > ar > blog > aivigil-mcp-security-case-study

How an Unauthenticated MCP Server Led to SSRF, LFI, and AWS Credential Theft

2+ week, 3+ day ago  (844+ words) Background: MCP and the Expanding AI Attack Surface Google Threat Intelligence Group (GTIG) confirmed in early 2026 that adversaries, including nation-state actors from China, Iran, and North Korea, have operationalized LLMs and MCP infrastructure as force multipliers for reconnaissance, initial access,…...

Symbols: nyse:s
Cloud SEK
cloudsek. com > blog > inside-a-tor-backed-supply-chain-worm

Inside a Tor Backed Supply Chain Worm

1+ mon, 5+ day ago  (976+ words) The decoy was well constructed. The ##lib/## directory contains a functional implementation of SHA-256, HMAC, PBKDF2, AES-CBC, and Base64, a near verbatim copy of the legitimate ##crypto-js## source. ##index. js## exports all of these correctly. Between 14: 39 and 21: 21 UTC on 11 May 2026, the actor…...

Symbols: index.js
Cloud SEK
cloudsek. com > knowledge-base > ai-attack-surface-monitoring

What is AI Attack Surface Monitoring? How It Works and What It Detects

1+ mon, 1+ week ago  (758+ words) AI attack surface monitoring tracks every AI system in an organization to find security risks before attackers can use them. It looks at AI models, AI APIs, AI agents, MCP servers, and the data they connect to " areas that older…...

Symbols: nasdaq:chkp
Cloud SEK
cloudsek. com > ancmt > cloudsek-clarifies-absence-from-gartner-magic-quadrant-2026-and-outlines-next-steps

We Missed the Gartner Magic Quadrant Submission, and We Are Fixing It

1+ mon, 1+ week ago  (665+ words) BANGALORE: Cloud SEK was not included in the 2026 Gartner Magic Quadrant for Cyber Threat Intelligence Technologies. We want to address this directly, transparently, and responsibly. Our absence from the report was not because Cloud SEK chose not to participate. It…...

Symbols: btc-usd
Cloud SEK
cloudsek. com > ar > knowledge-base > threat-intelligence-automation

What is threat intelligence automation?

1+ mon, 4+ week ago  (982+ words) Threat intelligence automation is a cybersecurity capability where systems process threat data streams using artificial intelligence and machine learning to generate immediate security decisions. Data from Open Source Intelligence, internal logs, and external intelligence feeds flows through automated pipelines that…...

Symbols: nasdaq:rdwr,gbp/usd,gbp/eur,gbpusd=x,0mc5il,0dp0il
Cloud SEK
cloudsek. com > knowledge-base > threat-intelligence-feeds

Threat Intelligence Feeds Explained: Types and Importance

2+ mon, 1+ hour ago  (965+ words) A threat intelligence feed is a continuous stream of structured cyber threat data used to identify and prevent malicious activity. Within Cyber Threat Intelligence (CTI), such feeds support proactive detection by continuously exposing emerging risks and attack patterns. Detection of…...

Symbols: nasdaq:rdwr