• Microsoft
  • Purple Teams
  • XDR & CyberSOC
  • AI Security
  • Red Teams
  • Blue Teams
  • Cloud Security
  • OT Security
  • Risk & Compliance

Benchmarked Threat Resilience

VECTR™ helps facilitate the process to test controls, record outcomes and report on your resilience and improvement over time.

VECTR™’s Index Threat Resilience Benchmarks™ are the only global cybersecurity collaboration to answer the question “how do we compare to our peers?”

Cut Cloud Technology Costs

SCALR™ XDR uses a security data lake architecture to minimize SIEM costs, maximize your ability to store security events, and accelerate search and hunting capabilities. The SCALR™ XDR service is enhanced by our distinctive SCALR™ AI, Purple Teams & Threat Resilience Metrics.

Vulnerability Management Simplified

Despite the many tools in the market, Vulnerability Management in most organizations still requires significant manual efforts to “find and fix” critical vulnerabilities in the enterprise. SCALR™ Sight focuses on simplifying the process without the need to change your current tools.

Intelligence by Design

SCALR AI is a multi-agentic workflow engine for large, complex task execution in your SRA-powered SCALR XDR Security Operations Center.

  • Webinars
  • SRA Labs
  • Partnerships
  • Services
  • Platforms
  • Blog
  • About Us
  • Careers
  • Contact

Get SRA’s free report: The Purple Perspective 2026

  • Services
    • Microsoft
    • Purple Teams
    • XDR & CyberSOC
    • AI Security
    • Red Teams
    • Blue Teams
    • Cloud Security
    • OT Security
    • Risk & Compliance
  • Platforms
    • VECTR™
    • SCALR™ XDR
    • SCALR™ Sight
    • SCALR™ AI
  • Blog
    • Webinars
    • SRA Labs
  • About Us
    • Partnerships
  • Careers
  • Contact

🚩 Threat Actors Use AI Brand Impersonation to Drive Phishing, Malvertising, and Infostealer Delivery

by TIGR Threat Watch | Jun 13, 2026 | TIGR

Microsoft Threat Intelligence reported that threat actors are increasingly abusing the public interest in AI by impersonating popular AI brands such as ChatGPT, Microsoft Copilot, DeepSeek, and Anthropic’s Claude. The activity does not represent compromise of the...

🚩 Kali365 PhaaS Uses Microsoft Device Code Flow to Steal Tokens and Enable Mailbox Abuse

by TIGR Threat Watch | Jun 13, 2026 | TIGR

Huntress reported a suspected Kali365 / Octopi365 phishing-as-a-service campaign after observing unusual Microsoft device code authentication activity from Tencent Cloud IPs in AS132203 beginning on May 18, 2026. The campaign used lures such as Canva-hosted “encrypted...

JDY IoT botnet expansion enables large-scale reconnaissance and rapid targeting of newly disclosed vulnerabilities.

by TIGR Threat Watch | Jun 11, 2026 | TIGR

Lumen Black Lotus Labs disclosed a resurgence and expansion of the JDY botnet, a covert reconnaissance network linked to China-nexus threat activity. The botnet now comprises more than 1,500 compromised SOHO and IoT devices from multiple vendors, including Cisco,...

Oracle PeopleSoft PeopleTools vulnerability enables unauthenticated remote code execution with active exploitation suspected.

by TIGR Threat Watch | Jun 11, 2026 | TIGR

Oracle disclosed a critical vulnerability in PeopleSoft Enterprise PeopleTools, tracked as CVE-2026-35273. The issue affects PeopleTools versions 8.61 and 8.62 and carries a CVSS v3.1 base score of 9.8. Oracle PeopleSoft Enterprise Applications environments may also...

npm v12 introduces secure-by-default install restrictions to reduce supply chain code execution risk

by TIGR Threat Watch | Jun 11, 2026 | TIGR

GitHub announced upcoming security-focused changes in npm version 12 that alter default behaviors of npm install. The changes affect how dependency scripts, Git-based dependencies, and remote packages are handled during installation, shifting them from automatic...

Google Patches Actively Exploited Chrome V8 Zero-Day Allowing Arbitrary Code Execution

by TIGR Threat Watch | Jun 10, 2026 | TIGR

Google released a Chrome security update addressing CVE-2026-11645, a high-severity out-of-bounds read and write vulnerability in V8, Chrome’s JavaScript and WebAssembly engine. NVD describes the flaw as allowing a remote attacker to execute arbitrary code inside the...
« Older Entries

Follow us on social media

  • Follow
  • Follow
  • Follow
  • Follow

View our Webinars

Get the TIGR Threat Watch email bulletin here!

(215) 867-9051

SRA Labs

Advisories

Privacy Policy

Copyright © 2020-2026. Security Risk Advisors Intl., LLC. All Rights Reserved.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}

Loading Comments...