<?xml version='1.0' encoding='utf-8'?>
<rss version="2.0"><channel><title>Cybersecurity Tracker: SentinelOne Watch</title><link>https://cybersecuritytracker.ai/?stack=1</link><description>Stories and vulnerabilities involving SentinelOne.</description><lastBuildDate>Sun, 26 Jul 2026 22:32:52 GMT</lastBuildDate><item><title>Nuclear-Sabotage Malware Benchmark Trips Up Most Frontier AI Models</title><link>https://securityweek.com/nuclear-sabotage-malware-benchmark-trips-up-most-frontier-ai-models</link><guid isPermaLink="false">cst-3087</guid><description>SentinelOne released a benchmark based on the Fast16 case to evaluate how frontier AI models handle sustained malware investigation tasks. Most models tested failed to maintain accuracy across the benchmark's scenarios.</description><pubDate>Thu, 23 Jul 2026 12:42:12 GMT</pubDate></item><item><title>China, India-Linked Hackers Both Targeted Same Pakistani Police Force</title><link>https://securityweek.com/china-india-linked-hackers-both-targeted-same-pakistani-police-force</link><guid isPermaLink="false">cst-2325</guid><description>Security researchers at SentinelOne identified that both China-linked and India-linked hacking groups have targeted Pakistan's Balochistan Police force over a period of at least two years. The simultaneous targeting of the same Pakistani law enforcement agency by adversaries reflects broader regional cyber espionage activity.</description><pubDate>Fri, 10 Jul 2026 11:55:11 GMT</pubDate></item><item><title>Why Halcyon? A SOC Operator's Answer.</title><link>https://halcyon.ai/blog/why-halcyon-soc-operators-answer</link><guid isPermaLink="false">cst-1995</guid><description>An article discusses the architectural differences between Halcyon and competing security platforms like CrowdStrike, SentinelOne, and Microsoft Defender from the perspective of a field CISO evaluating endpoint protection options during ransomware incidents.</description><pubDate>Wed, 24 Jun 2026 00:04:04 GMT</pubDate></item><item><title>LABScon25 Replay | Keynote: Steps to an Ecology of Cyber</title><link>https://sentinelone.com/labs/labscon25-replay-keynote-steps-to-an-ecology-of-cyber</link><guid isPermaLink="false">cst-603</guid><description>A keynote from SentinelLABS VP Juan Andrés Guerrero-Saade argues that cybersecurity is transitioning from an experimental era toward a more standardized and automated future enabled by large language models. He frames LLMs as a source of cheap, scalable evaluative power that can mechanize routine analysis and reduce dependence on scarce human expertise. The talk advocates for systems where human expertise and AI work together through standardized, automated approaches rather than defending legacy product categories and workflows.</description><pubDate>Thu, 11 Jun 2026 13:00:59 GMT</pubDate></item><item><title>LABScon25 Replay | Gamaredon x Turla: Unveiling a 2025 Espionage Alliance Targeting Ukraine</title><link>https://sentinelone.com/labs/labscon25-replay-gamaredon-x-turla-unveiling-a-2025-espionage-alliance-targeting-ukraine</link><guid isPermaLink="false">cst-604</guid><description>ESET researchers presented technical evidence at LABScon 25 demonstrating that Gamaredon actively facilitated Turla's access to high-value Ukrainian targets between February and June 2025. Gamaredon's tools, including PteroGraphin and PteroOdd, were used to deploy Turla's Kazuar backdoor and restore access after compromise. The presentation reveals how Russian cyberespionage groups divide operational labor, with Gamaredon establishing initial access through spearphishing while Turla deploys advanced espionage platforms for post-compromise objectives.</description><pubDate>Tue, 02 Jun 2026 13:00:58 GMT</pubDate></item><item><title>LABScon25 Replay | Breach Alpha: Trading on Cyber Fallout</title><link>https://sentinelone.com/labs/labscon25-replay-breach-alpha-trading-on-cyber-fallout</link><guid isPermaLink="false">cst-605</guid><description>Researchers Mick Baccio and Scott Roberts presented analysis on whether public indicators of cybersecurity breaches can predict stock market reactions before formal disclosure. Using AI-assisted data collection and time-series modeling, they tested a trading hypothesis based on casino operator ransomware incidents and other material breaches, ultimately concluding that market responses to cyber events are too inconsistent to reliably inform trading strategies.</description><pubDate>Thu, 14 May 2026 13:00:44 GMT</pubDate></item><item><title>LABScon25 Replay | Please Connect to the Foreign Entity to Enhance Your User Experience</title><link>https://sentinelone.com/labs/labscon25-replay-please-connect-to-the-foreign-entity-to-enhance-your-user-experience</link><guid isPermaLink="false">cst-607</guid><description>Joe FitzPatrick presents research on undocumented connectivity features in imported networked devices, particularly highlighting cellular radios discovered in U.S. highway solar inverters and the widespread reliance on foreign-manufactured hardware by small businesses and infrastructure operators. He argues that current safeguards like import bans and FCC regulations are ineffective at managing supply chain risks and recommends alternatives including right-to-repair policies with offline use guarantees, hardware bills of materials, and comprehensive privacy legislation. The talk examines how devices default to connecting to foreign entities and the practical challenges of using such hardware without establishing external connections.</description><pubDate>Wed, 06 May 2026 13:00:29 GMT</pubDate></item><item><title>LABScon25 Replay | Are Your Chinese Cameras Spying For You Or On You?</title><link>https://sentinelone.com/labs/labscon25-replay-are-your-chinese-cameras-spying-for-you-or-on-you</link><guid isPermaLink="false">cst-609</guid><description>Researchers Marc Rogers and Silas Cutler analyzed ultra-cheap Chinese smart home cameras and video doorbells sold globally under rotating brand names, revealing they share identical hardware platforms, contain hardcoded root passwords, and route user data through servers in China and Hong Kong despite claims of local processing. The devices are distributed through shell companies designed to evade regulatory oversight, with minimal security updates and rapid hardware iterations resembling malware distribution patterns. The investigation demonstrates a widespread, vulnerable Internet of Things (IoT) surface accessible to remote configuration from overseas actors.</description><pubDate>Wed, 22 Apr 2026 22:00:15 GMT</pubDate></item><item><title>Cephalus Ransomware: Don’t Lose Your Head</title><link>https://huntress.com/blog/cephalus-ransomware</link><guid isPermaLink="false">cst-827</guid><description>Huntress identified two incidents in mid-August connected to Cephalus ransomware, which exploited DLL sideloading through a legitimate SentinelOne executable to gain execution.</description><pubDate>Thu, 21 Aug 2025 21:00:00 GMT</pubDate></item><item><title>Wiz and SentinelOne announce exclusive partnership to deliver end to end cloud security</title><link>https://wiz.io/blog/wiz-and-sentinelone-announce-exclusive-partnership-to-deliver-end-to-end-security</link><guid isPermaLink="false">cst-1740</guid><description>Wiz and SentinelOne announced an exclusive partnership to deliver integrated cloud security solutions. The collaboration aims to enhance customer value and reshape the enterprise security market through combined capabilities.</description><pubDate>Tue, 07 Mar 2023 15:34:26 GMT</pubDate></item></channel></rss>