Threat Intelligence
Threat intelligence from the Kaimz SOC — BEC campaigns, ransomware analysis, MDR case studies, and incident response documentation.
6 articles
What Actually Happens During a Ransomware Incident: A Timeline From the Inside
Security blog posts about ransomware tend to cover two things: the technical analysis of the malware, or the policy implications. What they…
Credential Stuffing: How 5 Billion Leaked Passwords Become 50,000 Account Takeovers
Every time there’s a major data breach, security people say the same thing: “Change your passwords. Use unique passwords. Enable MFA.” The…
Inside a 2-Hour Ransomware Containment: Our Incident Response Playbook
The 2:00 AM Call At 02:17, an automated alert from Aegis Sovereign fired: anomalous SMB lateral movement across 14 hosts in a…
What 24/7 MDR Actually Means: Inside the Kaimz Security Operations Centre
The Problem with “24/7 Monitoring” Every MSSP claims 24/7 monitoring. The question is: monitoring what, by whom, and what happens when something…
Anatomy of a Phishing Kit: Reverse Engineering a BEC Campaign
Introduction Business Email Compromise (BEC) attacks cost organizations billions annually. In this analysis, we dissect a live phishing kit targeting financial services…
The Deepfake CEO Call That Almost Transferred $2.3 Million
The CFO got a call from the CEO. Or at least, it sounded exactly like the CEO. The voice matched. The cadence…