Blog
Sharing Mitiga’s latest threat intelligence and research, cloud IR insights, and company news
Mitiga Security Advisory: Lack of Forensic Visibility with the Basic License in Google Drive
Heading
Mitiga's advisory highlights critical gaps in forensic visibility with Google Drive's Basic license, affecting security and incident investigations. Read on.
Think You Have All the Cloud Forensics Data You Need? You Probably Don't
Heading
Logs are everywhere—the digital records of events and actions that have taken place in every hardware system, application and network. All of your digital environments generate a log of some form.
How Okta Passwords Can Be Compromised: Uncovering a Risk to User Data
Heading
Mitiga's research team uncovered a data risk to Okta users due to passwords that can be present in logs. This article outlines the risk and attack method.
Samsung Next Invests In Mitiga, Brings Total Funding to $45M
Heading
Mitiga, the cloud and SaaS incident response leader, today announced the completion of a Series A Round bringing total funding to $45 million led by ClearSky Security, with participation from Samsung Next and existing investors Blackstone, Atlantic Bridge and DNX.
Google Cloud Platform Exfiltration: A Threat Hunting Guide
Heading
If you’re wondering if the cloud era is here, you need only look at the latest stats. 67% of enterprise infrastructure is now cloud-based and 94% of enterprises use cloud services.1 It’s no wonder that public clouds like Google Cloud Platform (GCP) have become a new playground for threat actors. There is a lot to exploit.
Mitiga Security Advisory: Insufficient Forensic Visibility in GCP Storage
Heading
As part of Mitiga’s continuous research into cloud attacks and forensics, we have been examining potential data exfiltration techniques in GCP (Google Cloud Platform) and how to identify and investigate them. During this research, we discovered a significant forensic security deficiency in Google Cloud Storage that enables a threat actor to exfiltrate in a covert manner.
Former Mandiant COO and President John Watters Joins Mitiga as Independent Board Member
Heading
Cybersecurity veteran brings 30+ years of cybersecurity experience, building companies and M&A, most recently selling to Google for $5.4B.
Guide: CircleCI Breach Cybersecurity Incident Hunting Guide
Heading
Learn how to investigate the CircleCI breach with Mitiga’s technical guide to assist organizational threat hunting efforts.
If It Scares You, It Might Be Good to Try — Monorepo and Dynamically Configured CI
Heading
In this blog, Mitiga Devops Engineer Stav Ochakovski addresses our organizational monorepo shift and why it triggered a CI adjustment, as well.