Blog

2026's Shifting Threat Landscape: What Alert Data Reveals

The alert data has spoken: attackers are spending less time breaking in and more time operating once they're inside. Here's what Critical Start's H1 2026 Cyber Threat Intelligence Report reveals about the shift and what security leaders should do about it.
Critical Start
September 3, 2026
6 min read
Webinar

2026's Shifting Threat Landscape: What Alert Data Reveals

Critical Start's Cyber Research Unit unpacks the H1 2026 Threat Landscape Report - why "execution" overtook "initial access" as the top MITRE tactic, which industries are trading places on the target list, and how SOC AI helped crack a steganography-based attack.
Gerard Chukwu, CTI/AI Technologist
September 3, 2026
Threat Intel

The Threat of North Korean IT Workers

DPRK operatives are no longer just gaming payroll — they're landing inside source code repositories, production infrastructure, and even a U.S. federal agency, with AI now baked into every stage of the con.
Gerard Chukwu, CTI AI Technologist
August 26, 2026
7 min read
Blog

Black Hat 2026: The AI Conversation Is Growing Up

A Black Hat 2026 recap on how security leaders' questions about AI in the SOC have shifted from "what can it do" to "what should it be trusted to do."
Randy Watkins, CTO & Co-Founder
August 18, 2026
4 min read
Case Study

Rapid Detection and Containment of a Qilin Ransomware Attack

A three-week dwell period, 45 encrypted devices, and a backup infrastructure under active destruction — see how Critical Start's SOC isolated the environment and severed C2 in just 7 minutes.
Critical Start
July 31, 2026
3 min read
Case Study

PowerShell Backdoor Containment & Mitigation

A phishing email, a PowerShell backdoor built to evade detection, and 23 minutes standing between initial access and full containment — see how Critical Start's SOC shut down an advanced C2 channel before it could exfiltrate data.
Critical Start
July 31, 2026
2 min read