-
AI Security Threat ResearchApr 29, 2026
Meet Bluekit: The AI-Powered All-in-One Phishing Kit
Discover Bluekit, the AI-driven phishing kit that centralizes phishing operations with advanced features like automated domain registration and an AI Assistant.
Daniel Kelley
3 min read
-
Threat ResearchApr 20, 2026
The Vercel Breach: Steps To Protect Your Organization
Vercel disclosed a major breach exposing customer environment secrets via a compromised AI tool. Learn what happened, why it matters, and the steps to protect your organization.
Chen Levy Ben Aroy
3 min read
-
Threat ResearchApr 17, 2026
The Invisible Footprint: How Anonymous S3 Requests Evade AWS Logging
Learn how anonymous S3 requests evaded AWS CloudTrail logging via VPC endpoints, the risks to enterprises, and how AWS addressed the issue.
Maya Parizer
4 min read
-
AI Security Threat ResearchApr 13, 2026
Deep Dive into Architectural Vulnerabilities in Agentic LLM Browsers
Varonis Threat Labs investigated Comet, OpenAI Atlas, Edge Copilot, and Brave Leo to understand how LLM browsers work and where attackers can break them.
Itay Yashar
14 min read
-
Threat ResearchApr 03, 2026
A Look Inside Claude's Leaked AI Coding Agent
A Varonis Threat Labs breakdown of Anthropic’s Claude Code leak, uncovering the AI coding agent’s architecture, guardrails, and attack surface.
Varonis Threat Labs
4 min read
-
Threat ResearchApr 01, 2026
A Quiet "Storm": Infostealer Hijacks Sessions, Decrypts Server-Side
Meet Storm, a new infostealer that tiptoes around endpoint security tools, remotely decrypts browser credentials, and lets operators restore hijacked sessions.
Daniel Kelley
3 min read
-
Cloud Security Threat ResearchMar 25, 2026
Varonis Discovers Local File Inclusion in AWS Remote MCP Server via CLI Shorthand Syntax
Varonis uncovers a local file inclusion vulnerability in the AWS Remote MCP Server, exposing how authenticated access can lead to sensitive data exposure.
Coby Abrams
2 min read
-
Salesforce Threat ResearchMar 10, 2026
What You Need To Know About Salesforce AuraInspector Attacks
ShinyHunters is abusing misconfigured Salesforce Experience sites to expose sensitive data. Learn how the attack works and how to reduce your risk.
Varonis Threat Labs
2 min read
-
Threat ResearchFeb 25, 2026
Shai-Hulud Campaigns Explained
Months after Shai‑Hulud, organizations are still uncovering breaches. Learn what the campaign did, its lasting impact, and how to assess exposure.
Simon Biggs
5 min read
-
Threat ResearchFeb 24, 2026
1Campaign: A New Cloaking Platform Helping Attackers Abuse Google Ads
1Campaign is a new cloaking platform that helps attackers bypass Google Ads screening, evade security researchers, and keep phishing and crypto drainer pages online longer.
Daniel Kelley
3 min read
-
Data Security Threat ResearchFeb 19, 2026
How Cybercriminals Buy Access: Logins, Cookies, and Backdoors
Explore how cybercriminals buy VPN credentials, infostealer logs, breach databases, and web shells to access networks without writing a single exploit.
Daniel Kelley
4 min read
-
Threat ResearchFeb 12, 2026
Dataflow Rider: How Attackers can Abuse Shadow Resources in Google Cloud Dataflow
Discover how attackers can hijack Google Cloud Dataflow pipelines by manipulating shadow resources and learn how to secure your environment against it.
Tamir Yehuda
6 min read
SECURITY STACK NEWSLETTER
Ready to see the #1 Data Security Platform in action?
Ready to see the #1 Data Security Platform in action?
“I was amazed by how quickly Varonis was able to classify data and uncover potential data exposures during the free assessment. It was truly eye-opening.”
Michael Smith, CISO, HKS
"What I like about Varonis is that they come from a data-centric place. Other products protect the infrastructure, but they do nothing to protect your most precious commodity — your data."
Deborah Haworth, Director of Information Security, Penguin Random House
“Varonis’ support is unprecedented, and their team continues to evolve and improve their products to align with the rapid pace of industry evolution.”
Al Faella, CTO, Prospect Capital