SentinelOne / SentinelLabs
sentinellabs · B · active
https://www.sentinelone.com/labs/
SentinelLabs CTI/research arm — APT, ransomware, and cloud-native attack research (added 2026-05-08). 2026-05-08 audit: WebFetch returned 5 dated articles latest 2026-05-07 (PCPJack cloud worm, LABScon25 Replay sessions, Multi-Agent LLM malware analysis). RSS at https://www.sentinelone.com/labs/feed/ also works. | 2026-06-20 full audit (v2.62): live=Y, drill=Y. FETCH → webfetch https://www.sentinelone.com/labs/ (listing) then webfetch per-article URL; RSS at https://www.sentinelone.com/labs/feed/. AVOID: No issues — WebFetch works on listing and detail. Note recent feed is heavy on LABScon25 conference replays (still substantive technical writeups).. | 2026-07-05 admiralty audit: B — vendor threat-research lab, original malware/APT research; live and drillable. Status stays active.
Cited in 7 entries
Citation cadence
Citation days per ISO week (10 weeks of coverage span, total 7).
- Government and public administration across Switzerland and Europe took a broad spread of attacks this week — ransomware, espionage watering-holes, AI-tooled APTs and credential-phishing2026-07-12
- Espionage actors weaponise a citizen-facing e-government complaint portal as a watering hole, serving a fake 'portal update' that reflectively loads a RAT2026-07-10
- Threat-actor developments: Russia-nexus espionage broadens; new China-nexus and DPRK clusters2026-06-29
- macOS.Gaslight — a DPRK-aligned Rust backdoor that targets the LLM-assisted analyst2026-06-26
- SentinelOne: "Living Off the Pipeline" — CI/CD subversion taxonomy with three real intrusion cases (TeamCity, GitLab service-account pivot, Contagious Interview)2026-05-16
- SentinelOne — Living Off the Pipeline: CI/CD subversion taxonomy2026-05-11
- TeamPCP → PCPJack — cloud-worm successor evicting prior operator artefacts2026-05-04