Blue Core Research
Contact Us
Blog Articles
View our blog articles and contact us for feedback, comments, and more information. We’re here to help.
  • Anomaly Analysis
    Anomaly Analysis
    How can you control activity in busy systems like databases? How will you know there’s a malicious SQL inside billions of those? Read to learn more.

    Anomaly analysis uses behavioral analysis, helping you save time while expanding your control to vast activity volumes. These capabilities are made possible by the unique security repository technology in Core Audit. The anomaly analysis engine dynamically creates behavioral profiles based on the activity captured by the security repository, allowing you to compare the present with…

    Read more

  • Proactive Forensics
    Proactive Forensics
    Visibility is the first step in any security effort. You can’t secure what you can’t see. Learn more about the value of visibility and how to achieve it.

    One of the popular myths about security is that you can get it out of the box. Just install something, and voila! You’re magically secured. But that never works. Regardless of what you’re trying to secure, your first step should always be understanding the activity. You should know how the system is used, by whom,…

    Read more

  • Fitted Security
    Fitted Security
    Avoiding the pitfalls of the security trends to design a security strategy that fits your environment and optimizes your posture given the available resources.

    Many organizations design their cybersecurity strategy and decide what solutions to purchase based on industry trends and best practices. The outcome is often imbalanced and inappropriate to the organization’s risk profile and security needs. Best-practice implementations are usually one-size-fits-all and not tailored to the specific environment. Being predictable, there are usually tools and guides on…

    Read more

  • SQL Injection attack detection
    SQL Injection Attack Detection
    This is a true story of a SQL injection attack on our website. Learn about the attack and why the Core Audit anomaly analysis database defense is the most effective way to combat this type of threat.

    This is a true story of a SQL injection attack on our website. Learn about the attack and why the Core Audit anomaly analysis database defense is the most effective way to combat this type of threat. Introduction We got an alert two days before New Year’s. It was shortly after midnight on December 30,…

    Read more

  • WordPress Attack detection
    WordPress Attack Detection
    WordPress is a common application for managing websites. But this story is about how we detected an attack on a generic application.

    On Sunday morning, we got an anomaly alert. It was March 19, 2023. This story is about what happened. Background The Blue Core Research website uses WordPress (a free and open-source content management system). WordPress usually uses MySQL as a backend database, and our installation is no different. While our WordPress doesn’t contain sensitive data,…

    Read more

  • Costa Rica Hack
    Lessons from the Costa Rica government breach

    Introduction When I first heard the news, my first thought was – how can a hacker group breach so many systems across so many government agencies so quickly? My answer was simple: they cannot. The inevitable conclusion is that they have infiltrated the government systems for months, if not years, waiting for the time they…

    Read more

  • SQL Injection
    SQL Injection
    SQL Injection is one of the most well-known attack vectors and it poses a significant security challenge. Learn more about how SQL injection works, and the different approaches to solving it.

    Introduction SQL Injection is one of the most well-known attack vectors and it poses a significant security challenge. The only way to understand the benefits and deficiencies of each solution is to understand the problem and the approach each solution uses to solve it. The Problem The best way to understand the problem is by…

    Read more