• Microsoft
  • Purple Teams
  • XDR & CyberSOC
  • AI Security
  • Red Teams
  • Blue Teams
  • Cloud Security
  • OT Security
  • Risk & Compliance

Benchmarked Threat Resilience

VECTR™ helps facilitate the process to test controls, record outcomes and report on your resilience and improvement over time.

VECTR™’s Index Threat Resilience Benchmarks™ are the only global cybersecurity collaboration to answer the question “how do we compare to our peers?”

Cut Cloud Technology Costs

SCALR™ XDR uses a security data lake architecture to minimize SIEM costs, maximize your ability to store security events, and accelerate search and hunting capabilities. The SCALR™ XDR service is enhanced by our distinctive SCALR™ AI, Purple Teams & Threat Resilience Metrics.

Vulnerability Management Simplified

Despite the many tools in the market, Vulnerability Management in most organizations still requires significant manual efforts to “find and fix” critical vulnerabilities in the enterprise. SCALR™ Sight focuses on simplifying the process without the need to change your current tools.

Intelligence by Design

SCALR AI is a multi-agentic workflow engine for large, complex task execution in your SRA-powered SCALR XDR Security Operations Center.

  • Webinars
  • Partnerships
  • Services
  • Platforms
  • Blog
  • About Us
  • Careers
  • Contact

Get SRA’s free report: The Purple Perspective 2026

  • Services
    • Microsoft
    • Purple Teams
    • XDR & CyberSOC
    • AI Security
    • Red Teams
    • Blue Teams
    • Cloud Security
    • OT Security
    • Risk & Compliance
  • Platforms
    • VECTR™
    • SCALR™ XDR
    • SCALR™ Sight
    • SCALR™ AI
  • Blog
    • Webinars
  • About Us
    • Partnerships
  • Careers
  • Contact
Single Point of Failure: Threat Hunting and Defending ESXi Attacks

Single Point of Failure: Threat Hunting and Defending ESXi Attacks

by Vanessa Joseph and Richard Andrews | Apr 1, 2026 | Blog, Blue Teams

Executive Summary: As of early 2026, VMware ESXi remains a priority target for both cybercriminals and nation-state actors. Its role as the foundational hypervisor for much of enterprise virtualization makes it a single point of failure, where a compromise can grant...
Multiple Active Phishing Campaigns From Bulletproof Infrastructure With Ties to Iranian APTs

Multiple Active Phishing Campaigns From Bulletproof Infrastructure With Ties to Iranian APTs

by Richard Andrews, Kofi Atuobi and Vanessa Joseph | Mar 25, 2026 | Blog, Blue Teams, Purple Teams, Red Teams

Summary SRA TIGR research has exposed a wave of SMS-based phishing (smishing) campaigns that is actively targeting organizations across multiple sectors using compensation-themed lures to harvest credentials. Technical analysis of the phishing infrastructure ties the...
ExCyTIn-Bench Part 4: AI In Your SOC: Process Beats Technology

ExCyTIn-Bench Part 4: AI In Your SOC: Process Beats Technology

by Mike Pinch | Mar 23, 2026 | Artificial Intelligence, Blog

The goal of part 4 in our ExCyTIn-Bench series is to make a point that’s easy to miss amid all the hype: a naive approach to AI-augmented SOC operations doesn’t work. If you take a state-of-the-art LLM, give it access to your SIEM (or data lake), and start asking it...
Investigating AI Usage in SOC Using Security Copilot

Investigating AI Usage in SOC Using Security Copilot

by Greg Stachura | Mar 16, 2026 | Artificial Intelligence, Blog

With the announcement of Security Copilot Units (SCUs) being included with E5 licensing, this is a great opportunity to start your AI journey in your SOC. Like it or not, AI is transforming the way people work, speeding up daily workflows and providing more robust...
Defending and Hunting AiTM Attacks

Defending and Hunting AiTM Attacks

by Richard Andrews, Vanessa Joseph and Kofi Atuobi | Mar 13, 2026 | Blog, Blue Teams

Executive Summary: Adversary-in-the-Middle (AiTM) phishing has become a dominant technique for bypassing Multi-Factor Authentication (MFA). Rather than simply stealing credentials, AiTM attacks intercept the session cookies generated after a successful MFA event,...
Understanding Nation-state Threat Actors with VECTR and MITRE ATT&CK

Understanding Nation-state Threat Actors with VECTR and MITRE ATT&CK

by Mike Pinch | Mar 12, 2026 | Blog, Purple Teams, Strategy

EDITOR’S NOTE (March 12, 2026): This blog was originally written in January 2020 but the content remains informative and relevant today. It was also revised on March 4, 2022. Some of the original content has been updated based on the most recent current...
« Older Entries

Follow us on social media

  • Follow
  • Follow
  • Follow
  • Follow

View our Webinars

Get the TIGR Threat Watch email bulletin here!

(215) 867-9051

Advisories

Privacy Policy

Copyright © 2020-2026. Security Risk Advisors Intl., LLC. All Rights Reserved.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
 

Loading Comments...