The Word On The Street
Explore recent press releases and media coverage to see what’s on our minds.

Uptycs Announces Mike Campfield as Chief Revenue Officer
Uptycs, provider of the first unified CNAPP and XDR platform, announced today the appointment of Mike Campfield as Chief Revenue Officer (CRO) to drive growth and help customers cost-effectively reduce cybersecurity risk. In this role, Campfield will be responsible for driving the company’s revenue strategy, channel strategy, and developing a world-class sales team. Campfield is a seasoned sales leader bringing more than 20 years of sales ...
Press Releases

Uptycs Recognized as Top Performer in MITRE Engenuity ATT&CK® Evaluations
Uptycs, provider of the first unified CNAPP and XDR platform, announced today that the company was recognized as a top performer in detection coverage by MITRE Engenuity ATT&CK® Evaluations, a program of MITRE Engenuity™, MITRE’s tech foundation for public good.

Uptycs Unified CNAPP & XDR Platform Earns Analyst Accolades as a Driving Force for Security Operations Excellence
Uptycs, provider of the first unified CNAPP and XDR platform, today announced that the company has been recognized by leading analyst firms including Gartner®, 451 Research’s S&P Global Market Intelligence, Enterprise Strategy Group (ESG), and KuppingerCole, further ...

Uptycs Appoints Kevin Paige as Chief Information Security Officer and VP of Product Strategy
Uptycs, provider of the first unified CNAPP and XDR platform, today announced the appointment of Kevin Paige as Chief Information Security Officer (CISO) and Vice President of Product Strategy. In this dual role, Paige will leverage his expertise as a former Uptycs customer and his ...

Uptycs Continues Momentum in Helping Customers Achieve Security Operations Excellence with AWS
Uptycs, provider of the first unified CNAPP and XDR platform, today announced it’s now part of the Amazon Web Services (AWS) Public Sector Partner (PSP) ...

Uptycs Integrates with Amazon Security Lake
Uptycs, provider of the first unified CNAPP and XDR platform, announced today an integration with Amazon Security Lake from Amazon Web Services (AWS).

Uptycs Achieves AWS Security Competency Status
Uptycs, provider of the first unified CNAPP and XDR platform, today announced it has achieved Amazon Web Services (AWS) Security Competency status. This ...

Uptycs Launches Industry’s First Cloud Security Early Warning System
Uptycs, provider of the first unified CNAPP and XDR platform, today announced the ability to collect and analyze GitHub audit logs and user identity information from ...

Uptycs Adds Agentless Scanning for Fast and Friction-Free Security for Cloud Workloads
Uptycs, provider of the first unified CNAPP and XDR platform, today announced the addition of agentless scanning, offering customers more options to secure ...

Correlate Threat Activity from the Kubernetes Control Plane and Container Runtime
Uptycs, provider of the first unified CNAPP and XDR platform, today announced enhanced Kubernetes and container security capabilities. These new features ...

Uptycs Announces osquery@scale 2022 Conference
Uptycs, provider of the first unified CNAPP and XDR platform, today announced enhanced Kubernetes and container security capabilities. These new features ...

Uptycs Strengthens Cloud Security Offering with Cloud Detection and Response
Uptycs, provider of the first cloud-native security analytics platform enabling cloud and endpoint security from a common solution, today announced new ...

Uptycs Enables Cloud Security Consolidation with Comprehensive CNAPP Offering
Uptycs, provider of the first cloud-native security analytics platform enabling cloud and endpoint security from a common solution, announced today at the ...

Uptycs Strengthens Cloud Security Offering with CIEM, Announces Multi-Cloud Support
Uptycs, provider of the first cloud-native security analytics platform enabling cloud and endpoint security from a common solution, announced today new cloud ...

Uptycs Strengthens Executive Team by Adding Kevin Durkin as Chief Financial Officer
Uptycs announced today that Kevin Durkin has joined the company as Chief Financial Officer (CFO). With more than 30 years of finance and leadership experience, ...

MITRE Engenuity ATT&CK® Evals Highlights Ransomware Detection
Uptycs, provider of the first cloud-native security analytics platform enabling cloud and endpoint security from a common solution, today announced the results of ...

Uptycs Adds Advanced Detection To Bolster Protection for Remote Workforces
Uptycs announced today it has added capabilities to their XDR solution to provide improved detection and triage of advanced attacks and APT threat actors.

Uptycs Bolsters Leadership Team to Fuel Continued Growth
Uptycs announced today that it is expanding its team with key leadership promotions and hiring. Divakar Permalla was promoted to VP of Customer ...

Uptycs New Remediation And Blocking Capabilities
Uptycs, today announced Uptycs Protect, which adds new blocking and remediation capabilities in their extended detection and response (XDR) offering.

Uptycs Adds David Geevaratne As SVP Of Sales
Uptycs announced today that David Geevaratne has joined the company as Senior Vice President of Sales. In his new role, Geevaratne is responsible for ...

Uptycs Raises $50m To Accelerate Growth Cloud-Native Security Analytics Platform
Uptycs announced today that it has raised $50 million in a Series C funding round, bringing the company's total amount raised to $93 million. This latest ...

MITRE Engenuity ATT&CKⓇ Showcases Uptycs' Advanced Endpoint Threat Detection
Uptycs, the leader in cloud-native security analytics, today announced its results from the 2020 ATT&CK® Evaluations for Enterprise performed by MITRE Engenuity.

Uptycs Announces Cloud Security and Compliance for AWS
Uptycs, a leader in SQL-powered security analytics, announced today its advanced cloud security and compliance offering. The Uptycs Security Analytics Platform ...

Uptycs Named a Representative Vendor in the Gartner® Market Guide for CNAPP
Uptycs, provider of the first unified CNAPP and XDR platform, is pleased to announce it has been recognized as a Representative Vendor in the 2023 Gartner Market Guide ...
Media Coverage

New CISO Appointments 2023
The upper ranks of corporate security are seeing a high rate of change as companies try to adapt to the evolving threat landscape. Many companies are hiring a chief security officer (CSO) or chief information security officer (CISO) for the ...

New QwixxRAT emerges, NetSupport RAT deployed in new campaign
Threat actors have been ramping up promotions for the new QwixxRAT information-stealing malware on Discord and Telegram, while the NetSupport Manager RAT has been leveraged in a new ongoing malware campaign, reports ...

10 Cybersecurity Companies Making Moves: July 2023
In July, Uptycs hired veteran cybersecurity leader Kevin Paige as its CISO and vice president of product strategy. Paige had most recently been the CISO at supply chain management firm Flexport, and earlier in his career held security ...

Infostealer incidents more than doubled in Q1 2023
Incidents involving infostealers have more than doubled in Q1 2023 compared with the same time period last year, and are attacking three major platforms: Windows, Linux and the macOS.
In a study released July 26 by Uptycs, the

Fake PoC with data-stealing malware discovered on GitHub
The PoC contains a backdoor, which has broad data-stealing capabilities and can exfiltrate a wide array of data from the hostname and username to an exhaustive list of home directory contents.
A fake repository has been discovered ...

Fake PoC on GitHub lures security researchers to download malware
Threat actors have crafted a novel ploy designed to bait cybersecurity researchers into a trap by posting a fake proof-of-concept (PoC) to GitHub that is actually a backdoor.
Researchers at Uptycs outlined ...

Linux Hacker Exploits Researchers With Fake PoCs Posted to GitHub
A GitHub user managed to dupe security researchers by publishing fake proofs-of-concept (PoCs) containing Linux backdoors.
Cybersecurity researchers use PoCs to test and better understand publicly ...

New ‘ShadowVault’ macOS malware steals passwords, crypto, credit card data
Cyber security firm Guardz has announced that it has discovered new malware designed to “steal sensitive data” in the background on macOS. Dubbed “ShadowVault,” the malware, according to a forum posting discovered by Guardz, ...

New Malware Targets 97 Browser Variants, 76 Crypto Wallets & 19 Password Managers
New malware dubbed Meduza Stealer can steal information from a large number of browsers, password managers and cryptocurrency wallets, according to a report from cybersecurity company Uptycs. The malware was developed ...

Novel stealthy Meduza Stealer targeted at Windows systems examined
Windows systems are being targeted by the new Meduza Stealer malware with comprehensive data exfiltration capabilities and a sophisticated design that enables evasion of security software detection, The Hacker News reports.

Dangerous new infostealer targets top password managers
A new Windows infostealer is on the loose, stealing highly sensitive information and featuring clever ways to evade detection by security software.
Known as the Meduza Stealer, its sole purpose is "comprehensive data ...

Meduza Stealer Targets Windows Users With Advanced Tactics
A new malware called “The Meduza Stealer” has been observed targeting Windows users with advanced data theft tactics.
The Uptycs Threat Research team discovered the new threat while ...

Cloud Security Early Warning System – Sudarsan Kannan, Uptycs
Uptycs recently introduced the industry’s first “Cloud Security Early Warning System.” Uptycs customers can track and analyze malicious activity across multiple attack surfaces from a single user interface (UI), including endpoints, cloud, ...

7 key features for Kubernetes and container security
Uptycs combines threat detection for Kubernetes and container runtimes, along with automated registry scanning and Kubernetes hardening checks. Here are the highlights ...

Cyclops ransomware’s info stealer seeks Windows, Linux system compromise
Windows and Linux systems are being targeted by a new information-stealing malware peddled by the Cyclops ransomware operation, The Hacker News reports ...

RSAC Fireside Chat: Uptycs emulates Google, Akamai to protect cloud-native apps and endpoints
The inadequacy of siloed security solutions is well-documented. The good news is that next-gen security platforms designed to unify on-prem and cloud threat detection and remediation ...

Passkeys may not be for you, but they are safe and easy—here’s why
My recent feature on passkeys attracted significant interest, and a number of the 1,100-plus comments raised questions about how the passkey system actually works and if it can be trusted...

Uptycs adds audit log analysis to platform
Uptycs announced that its unified cloud-native application protection and extended detection and response platform has received a new functionality that serves as an early-warning system ...

Uptycs adds support for GitHub audit logs and user identity information
Cloud and endpoint cybersecurity startup Uptycs Inc. today announced what it claims to be the first “early warning system” that allows security teams to identify and stop threat actors before...

Uptycs Extends CNAPP Reach to DevOps Workflows
At the RSA Conference 2023 event, Uptycs today revealed it has extended the reach of its cloud-native application protection platform (CNAPP) to include the ability to collect log data from DevOps workflows ...

How to Manage Data Center Sprawl and Achieve Data-Driven Success
Data center sprawl is the bane of many organizations.
The push to modernize, deploy new workloads and move data to the edge ...

MacStealer Malware Plucks Bushels of Data From Apple Users
A novel cyber threat against macOS users is being sold for $100 a pop on the Dark Web, and activity is ramping up. To propagate, operators are looking ...

Shift Left? Shift Right? Neither: Here’s why smart companies shift up
Companies have touted "shift left" as a quality control approach, and developers "shift right" when testing software in post-production ...

It's Time to Talk About Securing Your Innovation Supply Chain
The assumption with cloud-native companies is that all of their applications and infrastructure are designed for, built in, and run on public cloud providers.

Is 10-Year-Old Facebook Tech the Future of Cloud Security?
In the pantheon of semi-obscure open source tools, osquery is one that deserves a closer look from most security professionals.

The Power of Osquery for Financial Technology
To protect their IT ecosystem, security teams not only implement traditional security controls for on-prem solutions, but they’re also focused on new threats ...

New infosec products of the week: May 6, 2022
Looking at the most interesting products from the past week, featuring releases from AuditBoard, BIO-key, Data Theorem, Enpass, Microsoft, N-able ...

Vulnerable Docker Installations Are A Playhouse for Malware Attacks
Uptycs researchers identified ongoing malicious campaigns through our Docker honeypot targeting exposed Docker API.

Docker Under Siege: Cybercriminals Compromise Honeypots
Cloud containers are increasingly part of the cybercrime playbook, with researchers flagging ongoing scanning for Docker weaknesses along with rapid ...

Malware Builder Leverages Discord Webhooks
Researchers discovered a simple malware builder designed to steal credentials, then pinging them to Discord webhooks.