Website profile

Soc Prime

SOC Prime builds collective cyber defense by fusing Detection as Code, Sigma, and MITRE ATT&CK® to help teams proactively defend against emerging threats.

  • 25articles · 30d
  • 3+ day agolatest article
  • Aug 19, 2026earliest in window
  • 88%with images
  • 253avg words
articles per day
Categories
  • Science & Technology 21
  • Software 18
  • Computers & Electronics 16
  • Business & Industrial 5
  • Conflict, War & Peace 4
  • Crime & Law 4
  • Internet & Telecom 4
  • Software Dev. 2

Please confirm you are human

This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.

A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.

Hold with a pointer, or hold Space or Enter.

News

Google News
socprime.com > blog > cve-2026-87491-chrome-v8-zero-day-exploited

CVE-2026-87491: Chrome V8 Zero-Day Exploited

3+ day, 14+ hour ago   (1226+ words) The vulnerability was fixed in Chrome 153.0.8010.36/.37 for Windows and macOS and 153.0.8010.36 for Linux as part of the September 8, 2026 Stable Channel release. Google confirmed that an exploit already exists in the wild but has not disclosed who is using it, which…...

SOC Prime
socprime.com > active-threats > mirage-kitten-deploys-noderabbit-and-pollcat-through-job-offer-lures

Mirage Kitten Deploys NodeRabbit and PollCat

3+ day, 19+ hour ago   (115+ words) SOC Prime Bias: Critical Rationale: This section details the precise execution of the adversary technique (TTP) designed to trigger the detection rule. The commands and narrative MUST directly reflect the TTPs identified and aim to generate the exact telemetry expected…...

SOC Prime
socprime.com > blog > cve-2026-44756-sap-kernel-rce-vulnerability

CVE-2026-44756 SAP Kernel RCE Vulnerability

3+ day, 19+ hour ago   (429+ words) Security teams seeking CVE-2026-44756 detection content can use the SOC Prime Platform to explore behavior-based detection rules and hunting queries mapped to MITRE ATT&CK®. Teams can also use Uncoder AI to convert threat intelligence into detection logic and hunting…...

SOC Prime
socprime.com > active-threats > guildma-astaroth-malware-infection-from-brazilian-portuguese-email

Guildma (Astaroth) Spreads via Brazilian Phishing Email

1+ week, 4+ day ago   (343+ words) SOC Prime Bias: High A Windows host was infected with Guildma (Astaroth) malware through a malicious Brazilian Portuguese email containing a geofenced link. The attack delivers a ZIP archive with a Windows shortcut that downloads content into an alternate data…...

SOC Prime
socprime.com > active-threats > bluedelta-deploys-hookedge-against-defense-and-diplomatic-targets

BlueDelta Deploys HOOKEDGE Against Diplomatic Targets

1+ week, 6+ day ago   (166+ words) SOC Prime Bias: High Organizations should disable macros in documents originating from the internet and enforce policies that block unsigned VBA macros. Security teams should monitor for scheduled task abuse and unusual Microsoft Edge execution, including headless mode. Inspecting outbound…...

SOC Prime
socprime.com > active-threats > agent-tesla-bec-attack-delivers-an-in-memory-infostealer

Agent Tesla BEC Attack Delivers In-Memory Infostealer

2+ week, 4+ day ago   (323+ words) SOC Prime Bias: High A Business Email Compromise (BEC) campaign is using a sophisticated JScript dropper to distribute Agent Tesla v4 malware. The attack relies on Unicode emoji obfuscation to evade signature-based detection and uses DonutLoader to execute a reflective payload…...

SOC Prime
socprime.com > active-threats > def-con-themed-phishing-abuses-google-apps-script-for-malware-delivery

Post-DEF CON Phishing Abuses Google Apps Script

3+ week, 2+ day ago   (169+ words) SOC Prime Bias: High Users should treat unexpected requests to execute terminal commands, bypass Gatekeeper, or install manual updates from document sidebars as suspicious. Organizations should monitor for unusual Google Apps Script activity and unauthorized use of code-signing certificates. Strong…...

SOC Prime
socprime.com > active-threats > fake-claude-search-results-lead-macos-users-to-macsync-stealer

Google Search for Claude Delivers MacSync Stealer

3+ week, 3+ day ago   (166+ words) SOC Prime Bias: High Users should avoid copying and executing unverified commands in Terminal, even when instructions appear on legitimate or trusted domains. Security teams should monitor for suspicious curl activity and Base64-encoded content within shell processes. Tools such as…...

SOC Prime
socprime.com > active-threats > malware-phishing-scam-phishing-emails-disguised-as-transaction-receipts

Fake Transaction Receipt Emails Deliver ScreenConnect

3+ week, 4+ day ago   (218+ words) SOC Prime Bias: High AhnLab Security Intelligence Center (ASEC) identified the campaign by examining the phishing email content and behavior of the attached PDF. The investigation traced the execution chain from the malicious VBScript to background payload retrieval and silent…...