Welcome to the Vectra Blog

Insights into how detection holds up in real environments and how changing attacker tactics impact your team’s response capabilities.

June 23, 2026
6/23/2026
Lucie Cardiet
and
A Valid Microsoft Signature Does Not Mean a Driver Is Safe

Four signed drivers. Three had documented CVEs. None on the blocklist. How DragonForce used the kernel signing pipeline to disable security tools.

Read more
June 18, 2026
6/18/2026
Lucie Cardiet
and
What Anthropic's Attacker-AI Data Means for Detection

A year of AI-enabled attacker activity, what it tells us about where attacks are headed, and where detection holds up.

Read more
June 17, 2026
6/17/2026
Mark Wojtasiak
and
In the AI Era, Insider Threats Are Not Just Human. They’re Artificial.

AI agents, service accounts, and automation are the new insider threat. Learn how artificial insiders create risk at machine speed.

Read more
Blog Posts
Filter
Clear