Technical Blog

Insights, threat intelligence, and best practices from the IRISH Security Research Team

July 28, 2024

Global Ransomware Landscape Report: H1 2024

Threat Intelligence Report

IRISH Threat Intelligence team's deep analysis of H1 2024 global ransomware attacks. LockBit 3.0 variants account for 31% of all incidents, with manufacturing remaining the top target. Detailed TTP breakdown of the Top 5 families and defensive recommendations.

Read More →
July 15, 2024

Zero Trust Implementation Guide: From PoC to Full Rollout

Zero Trust Best Practices

Drawing from hands-on experience guiding 80+ enterprises through zero trust adoption, we present a phased roadmap from proof of concept to enterprise-wide deployment. Covers identity-first strategy, micro-segmentation boundary design, and legacy system compatibility.

Read More →
June 22, 2024

IrisShield Whitepaper: Graph Neural Networks in Threat Detection

AI/ML Security Research

An in-depth look at how IrisShield leverages graph neural networks (GNNs) to model multi-dimensional data across hosts, networks, and identities — detecting unknown attack patterns through anomalous subgraph detection with 47% higher recall than traditional rule engines.

Read More →
June 8, 2024

Kubernetes Security Hardening Checklist 2024 Edition

Kubernetes DevSecOps

Comprehensive Kubernetes cluster hardening checklist spanning 12 dimensions: API Server, etcd, Network Policy, Pod Security Standards, RBAC, image signing, and more — with CIS Benchmark v1.8 mapping table.

Read More →
May 20, 2024

Log4Shell Retrospective: Lessons for Supply Chain Security

Supply Chain Vulnerability Analysis

Two years after Log4Shell (CVE-2021-44228), variants continue to be exploited. We review the full incident lifecycle and analyze the evolution and adoption challenges of SBOM, SLSA framework, and other supply chain security tools.

Read More →
May 5, 2024

Multi-Cloud FinOps in Practice: Reducing Cloud Spend by 35%

FinOps Cost Optimization

A real-world case study of IRISH implementing FinOps for a financial services client. Four-phase methodology — visibility, anomaly detection, rightsizing, and continuous governance — achieving 35% annualized cost savings.

Read More →