About Us - Check Point Research
ABOUT US
Check Point Research provides leading cyber threat intelligence to Check Point Software customers and the greater intelligence community. The research team collects and analyzes global cyber attack data stored on ThreatCloud to keep hackers at bay, while ensuring all Check Point products are updated with the latest protections. From the moment a breach is initiated, ThreatCloud begins sharing data across the entire network, providing researchers with the intelligence they need to deeply analyze and report on attacks. Check Point Research publications and intelligence sharing fuel the discovery of new cyber threats and the development of the international threat intelligence community to keep you secure.
LEADING THE THREAT INTELLIGENCE COMMUNITY
The research team consists of over 200 analysts and researchers cooperating with other security vendors, law enforcement and various CERTs. Their data sources includes open sources, the ThreatCloud network and dark web intelligence. Internally, the team has developed their own machine learning modules, anomaly detection, reverse engineering and campaign hunting techniques that all assist in staying ahead of hackers and the latest cyber threats. You can follow all our latest research on Twitter.
If you would like to collaborate or hear more about our research we would love to hear from you. Please feel free to contact us through Twitter or our Contact Page.
NOTABLE RESEARCH PUBLICATIONS BY CHECK POINT RESEARCH
First seen in the wild – Malware uses Corporate MDM as attack vector
SIGRed – Resolving Your Way into Domain Admin: Exploiting a 17 Year-old Bug in Windows DNS Servers
Hacker, 22, seeks LTR with your data: vulnerabilities found on popular OkCupid dating app
Keeping the gate locked on your IoT devices: Vulnerabilities found on Amazon’s Alexa
The Story of Jian – How APT31 Stole and Used an Unknown Equation Group 0-Day
APT35 exploits Log4j vulnerability to distribute new modular PowerShell toolkit
Leaks of Conti Ransomware Group Paint Picture of a Surprisingly Normal Tech Start-Up… Sort Of
State-sponsored Attack Groups Capitalise on Russia-Ukraine War for Cyber Espionage
Twisted Panda: Chinese APT espionage operation against Russian’s state-owned defense institutes
The New Era of Hacktivism – State-Mobilized Hacktivism Proliferates to the West and Beyond
We Decide What You See: Remote Code Execution on a Major IPTV Platform
Remote Cloud Execution – Critical Vulnerabilities in Azure Cloud Infrastructure
2020-2022
2019-2020
2018
2017
- Huawei Home Routers in Botnet Recruitment
- Christmas is Coming, The Criminals Await
- IoT Botnet – Full Investigation
- Bad Rabbit – Full Investigation
- IoT Botnet Storm Is Coming
- Brazilian Bankingware
- EternalBlue – Everything There Is To Know
- ExpensiveWall
- Beware Of The Bashware
- Malware Hiding In Your Resume
- Get Rich or Die Trying
- JavaScript Lost in Dictionary
- OSX/DOK
- WannaCry Registered Killswitch
- Lost in Translation
- Fireball – Led to eventual apprehension of attack perpetrators
2016
- EZCast Vulnerability
- HummingBad
- Sidestepper
- VikingHorde
- QuadRooter
- DressCode
- ImageGate
- Gooligan
- Check Point Research was also the first to reveal the infrastructure and operations behind the Cerber ransomware and the Nuclear Exploit Kit.
Note: The subscription and cookie consent sections have been omitted as per cleaning directives.