{"id":53754,"date":"2023-09-19T15:11:36","date_gmt":"2023-09-19T15:11:36","guid":{"rendered":"https:\/\/packetstormsecurity.com\/news\/view\/35027\/Misconfigured-SAS-Token-By-Microsofts-AI-Team-Exposes-38TB-Of-GitHub-Data.html"},"modified":"2023-09-19T15:11:36","modified_gmt":"2023-09-19T15:11:36","slug":"misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data","status":"publish","type":"post","link":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/","title":{"rendered":"Misconfigured SAS Token By Microsoft&#8217;s AI Team Exposes 38TB Of GitHub Data"},"content":{"rendered":"<div><img decoding=\"async\" src=\"https:\/\/files.scmagazine.com\/wp-content\/uploads\/2023\/06\/0623_github.jpg\" class=\"ff-og-image-inserted\"><\/div>\n<p>A data exposure incident found on Microsoft\u2019s AI GitHub repository, including more than 30,000 internal <a href=\"https:\/\/www.scmagazine.com\/news\/microsoft-teams-mfa-codes\" target=\"_blank\" rel=\"noreferrer noopener\">Microsoft Teams<\/a> messages \u2014 was caused by one misconfigured shared access signature (SAS) token.<\/p>\n<p>In a <a rel=\"noreferrer noopener\" href=\"https:\/\/www.wiz.io\/blog\/38-terabytes-of-private-data-accidentally-exposed-by-microsoft-ai-researchers\" target=\"_blank\">blog post Sept. 18,<\/a> Wiz researchers said they discovered that while publishing a bucket of open source training data on <a rel=\"noreferrer noopener\" href=\"https:\/\/www.scmagazine.com\/news\/secrets-surge-10-million-github-human-error-drives-exposure\" target=\"_blank\">GitHub<\/a>, Microsoft\u2019s AI research team accidentally exposed 38 terabytes of additional private data, including a disk backup of the workstations of two employees.<\/p>\n<p>The researchers explained that a SAS token is a signed URL that grants access to Azure storage data. Users can customize this access level with the permissions ranging between read-only and full control, while the scope can be either a single file, a container, or an entire storage account.<\/p>\n<p>The Wiz researchers further explained that the expiration time is also customizable, which lets the user create never-expiring access tokens. While this granularity offers great agility for users, it also creates the risk of granting too much access \u2014 as was the case with the misconfigured SAS token reported by Wiz.<\/p>\n<p>\u201cDue to a lack of monitoring and governance, SAS tokens pose a security risk and their usage should be as limited as possible,\u201d wrote the Wiz researchers. \u201cThese tokens are very hard to track, as Microsoft does not provide a centralized way to manage them within the Azure portal. In addition these SAS tokens can be configured to last forever, with no upper limit on their expiry time. Therefore, using Account SAS tokens for external sharing is unsafe and should be avoided.\u201d<\/p>\n<p>SAS tokens are a significant cybersecurity risk if not managed with the utmost care, said Andrew Whaley, senior technical director at Promon. Whaley said although they&#8217;re a valuable tool for collaboration and sharing data, they can also become a double-edged sword when misconfigured or mishandled.<\/p>\n<p>\u201cWhen overly permissive SAS tokens are issued or when they are exposed unintentionally, it&#8217;s like willingly handing over the keys to your front door to a burglar,\u201d said Whaley. \u201cMicrosoft may well have been able to prevent this breach if they implemented stricter access controls, regularly audited and revoked unused tokens, and thoroughly educated their employees on the importance of safeguarding these credentials. Additionally, continuous monitoring and automated tools to detect overly permissive SAS tokens&nbsp;could&nbsp;have&nbsp;also&nbsp;averted this blunder.\u201d<\/p>\n<p>SAS tokens are risky because they are similar to shared links to folders that administrators hand out, but have no good way to keep track of, explained Mohit Tiwari, co-founder and CEO at Symmetry Systems. Tiwari said the key takeaway is that organizations&nbsp;must understand what data they have, who can access it, and how it\u2019s being accessed.<\/p>\n<p>\u201cWhat Wiz has identified is not a cloud posture problem,\u201d said Tiwari.&nbsp;\u201cThis is a data inventory and access problem.\u201d<\/p>\n<p>READ MORE <a href=\"https:\/\/packetstormsecurity.com\/news\/view\/35027\/Misconfigured-SAS-Token-By-Microsofts-AI-Team-Exposes-38TB-Of-GitHub-Data.html\">HERE<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>READ MORE HERE&#8230;<\/p>\n","protected":false},"author":2,"featured_media":53755,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"colormag_page_layout":"default_layout","footnotes":""},"categories":[60],"tags":[8950],"class_list":["post-53754","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-packet-storm","tag-headlinemicrosoftdata-lossflawpassword"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.7 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Misconfigured SAS Token By Microsoft&#039;s AI Team Exposes 38TB Of GitHub Data 2026 | ThreatsHub Cybersecurity News<\/title>\n<meta name=\"description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Misconfigured SAS Token By Microsoft&#039;s AI Team Exposes 38TB Of GitHub Data 2026 | ThreatsHub Cybersecurity News\" \/>\n<meta property=\"og:description\" content=\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security &amp; Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/\" \/>\n<meta property=\"og:site_name\" content=\"ThreatsHub Cybersecurity News\" \/>\n<meta property=\"article:published_time\" content=\"2023-09-19T15:11:36+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/files.scmagazine.com\/wp-content\/uploads\/2023\/06\/0623_github.jpg\" \/>\n<meta name=\"author\" content=\"TH Author\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@threatshub\" \/>\n<meta name=\"twitter:site\" content=\"@threatshub\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"TH Author\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/\"},\"author\":{\"name\":\"TH Author\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\"},\"headline\":\"Misconfigured SAS Token By Microsoft&#8217;s AI Team Exposes 38TB Of GitHub Data\",\"datePublished\":\"2023-09-19T15:11:36+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/\"},\"wordCount\":482,\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/09\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data.jpg\",\"keywords\":[\"headline,microsoft,data loss,flaw,password\"],\"articleSection\":[\"Packet Storm\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/\",\"name\":\"Misconfigured SAS Token By Microsoft's AI Team Exposes 38TB Of GitHub Data 2026 | ThreatsHub Cybersecurity News\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/09\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data.jpg\",\"datePublished\":\"2023-09-19T15:11:36+00:00\",\"description\":\"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/09\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2023\\\/09\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data.jpg\",\"width\":1280,\"height\":800},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"headline,microsoft,data loss,flaw,password\",\"item\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/tag\\\/headlinemicrosoftdata-lossflawpassword\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Misconfigured SAS Token By Microsoft&#8217;s AI Team Exposes 38TB Of GitHub Data\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#website\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"name\":\"ThreatsHub Cybersecurity News\",\"description\":\"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform\",\"publisher\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\"},\"alternateName\":\"Threatshub.org\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#organization\",\"name\":\"ThreatsHub.org\",\"alternateName\":\"Threatshub.org\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"contentUrl\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/wp-content\\\/uploads\\\/2025\\\/05\\\/Threatshub_Favicon1.jpg\",\"width\":432,\"height\":435,\"caption\":\"ThreatsHub.org\"},\"image\":{\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/logo\\\/image\\\/\"},\"sameAs\":[\"https:\\\/\\\/x.com\\\/threatshub\"]},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.threatshub.org\\\/blog\\\/#\\\/schema\\\/person\\\/12e0a8671ff89a863584f193e7062476\",\"name\":\"TH Author\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g\",\"caption\":\"TH Author\"}}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Misconfigured SAS Token By Microsoft's AI Team Exposes 38TB Of GitHub Data 2026 | ThreatsHub Cybersecurity News","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/","og_locale":"en_US","og_type":"article","og_title":"Misconfigured SAS Token By Microsoft's AI Team Exposes 38TB Of GitHub Data 2026 | ThreatsHub Cybersecurity News","og_description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","og_url":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/","og_site_name":"ThreatsHub Cybersecurity News","article_published_time":"2023-09-19T15:11:36+00:00","og_image":[{"url":"https:\/\/files.scmagazine.com\/wp-content\/uploads\/2023\/06\/0623_github.jpg","type":"","width":"","height":""}],"author":"TH Author","twitter_card":"summary_large_image","twitter_creator":"@threatshub","twitter_site":"@threatshub","twitter_misc":{"Written by":"TH Author","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/#article","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/"},"author":{"name":"TH Author","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476"},"headline":"Misconfigured SAS Token By Microsoft&#8217;s AI Team Exposes 38TB Of GitHub Data","datePublished":"2023-09-19T15:11:36+00:00","mainEntityOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/"},"wordCount":482,"publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/09\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data.jpg","keywords":["headline,microsoft,data loss,flaw,password"],"articleSection":["Packet Storm"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/","url":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/","name":"Misconfigured SAS Token By Microsoft's AI Team Exposes 38TB Of GitHub Data 2026 | ThreatsHub Cybersecurity News","isPartOf":{"@id":"https:\/\/www.threatshub.org\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/#primaryimage"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/#primaryimage"},"thumbnailUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/09\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data.jpg","datePublished":"2023-09-19T15:11:36+00:00","description":"ThreatsHub Cybersecurity News | ThreatsHub.org | Cloud Security & Cyber Threats Analysis Hub. 100% Free OSINT Threat Intelligent and Cybersecurity News.","breadcrumb":{"@id":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/#primaryimage","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/09\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2023\/09\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data.jpg","width":1280,"height":800},{"@type":"BreadcrumbList","@id":"https:\/\/www.threatshub.org\/blog\/misconfigured-sas-token-by-microsofts-ai-team-exposes-38tb-of-github-data\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.threatshub.org\/blog\/"},{"@type":"ListItem","position":2,"name":"headline,microsoft,data loss,flaw,password","item":"https:\/\/www.threatshub.org\/blog\/tag\/headlinemicrosoftdata-lossflawpassword\/"},{"@type":"ListItem","position":3,"name":"Misconfigured SAS Token By Microsoft&#8217;s AI Team Exposes 38TB Of GitHub Data"}]},{"@type":"WebSite","@id":"https:\/\/www.threatshub.org\/blog\/#website","url":"https:\/\/www.threatshub.org\/blog\/","name":"ThreatsHub Cybersecurity News","description":"%%focuskw%% Threat Intel \u2013 Threat Intel Services \u2013 CyberIntelligence \u2013 Cyber Threat Intelligence - Threat Intelligence Feeds - Threat Intelligence Reports - CyberSecurity Report \u2013 Cyber Security PDF \u2013 Cybersecurity Trends - Cloud Sandbox \u2013- Threat IntelligencePortal \u2013 Incident Response \u2013 Threat Hunting \u2013 IOC - Yara - Security Operations Center \u2013 SecurityOperation Center \u2013 Security SOC \u2013 SOC Services - Advanced Threat - Threat Detection - TargetedAttack \u2013 APT \u2013 Anti-APT \u2013 Advanced Protection \u2013 Cyber Security Services \u2013 Cybersecurity Services -Threat Intelligence Platform","publisher":{"@id":"https:\/\/www.threatshub.org\/blog\/#organization"},"alternateName":"Threatshub.org","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.threatshub.org\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.threatshub.org\/blog\/#organization","name":"ThreatsHub.org","alternateName":"Threatshub.org","url":"https:\/\/www.threatshub.org\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","contentUrl":"https:\/\/www.threatshub.org\/blog\/coredata\/uploads\/2025\/05\/Threatshub_Favicon1.jpg","width":432,"height":435,"caption":"ThreatsHub.org"},"image":{"@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/logo\/image\/"},"sameAs":["https:\/\/x.com\/threatshub"]},{"@type":"Person","@id":"https:\/\/www.threatshub.org\/blog\/#\/schema\/person\/12e0a8671ff89a863584f193e7062476","name":"TH Author","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/066276f086d5155df79c850206a779ad368418a844da0182ce43f9cd5b506c3d?s=96&d=mm&r=g","caption":"TH Author"}}]}},"_links":{"self":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/53754","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/comments?post=53754"}],"version-history":[{"count":0,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/posts\/53754\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media\/53755"}],"wp:attachment":[{"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/media?parent=53754"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/categories?post=53754"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.threatshub.org\/blog\/wp-json\/wp\/v2\/tags?post=53754"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}