Webinar

July 2026 TRU Intelligence Briefing On-Demand

Watch eSentire’s Threat Response Unit (TRU) as they share new research-driven observations of malware, notable vulnerabilities, threat actor groups, and cyber activity affecting the threat landscape.

During the July Threat Intelligence Briefing, TRU reviewed:

  • ThreatScape: This section provided a brief update on cyber activity associated with geopolitical changes, as well as discussed threats recently observed by eSentire’s SOC (DenoGate, Edgecution, Pay2Key) and notable vulnerabilities (CVE-2026-35273 - Oracle, CVE-2026-50751 – Checkpoint, CVE-2026-8037 - Progress Kemp LoadMaster)
  • Identity Is the Perimeter: ShinyHunters and the SaaS Extortion Economy: A loose collective operating out of "The Com" has turned compromised identities into some of the largest SaaS breaches on record like Snowflake, Salesloft/Drift, Gainsight, and a string of Fortune 500 victims from AT&T to Kering. TRU traced the ecosystem, the vishing-to-exfiltration playbook, and the living-off-the-land techniques that leave SOCs staring at legitimate-looking activity
  • From Vishing to Data Theft: TRU walked through an intrusion consistent with Pink, highlighted detection opportunities and mitigations organizations can implement

This webinar also included a live Q&A.

Watch the Webinar

Watch eSentire’s Threat Response Unit (TRU) as they share new research-driven observations of malware, notable vulnerabilities, threat actor groups, and cyber activity affecting the threat landscape.

During the July Threat Intelligence Briefing, TRU reviewed:

  • ThreatScape: This section provided a brief update on cyber activity associated with geopolitical changes, as well as discussed threats recently observed by eSentire’s SOC (DenoGate, Edgecution, Pay2Key) and notable vulnerabilities (CVE-2026-35273 - Oracle, CVE-2026-50751 – Checkpoint, CVE-2026-8037 - Progress Kemp LoadMaster)
  • Identity Is the Perimeter: ShinyHunters and the SaaS Extortion Economy: A loose collective operating out of "The Com" has turned compromised identities into some of the largest SaaS breaches on record like Snowflake, Salesloft/Drift, Gainsight, and a string of Fortune 500 victims from AT&T to Kering. TRU traced the ecosystem, the vishing-to-exfiltration playbook, and the living-off-the-land techniques that leave SOCs staring at legitimate-looking activity
  • From Vishing to Data Theft: TRU walked through an intrusion consistent with Pink, highlighted detection opportunities and mitigations organizations can implement

This webinar also included a live Q&A.

Get The Webinar