Sysdig
@sysdig
Followers
10K
Following
4K
Media
3K
Statuses
8K
The leader in real-time cloud security
San Francisco, CA
Joined January 2014
🚨 Credential theft. Self-propagation. Web hijacking. SSH backdoors. 🔎 Sysdig's threat researchers reveal how EtherRAT uses Ethereum to control infected systems—with Next.js apps as just one target in a broader campaign. Read the full threat analysis. ⤵️ https://t.co/YrL9QPKRBa
sysdig.com
Sysdig TRT analyzes EtherRAT, a novel blockchain-based implant exploiting React2Shell, revealing credential theft, worm propagation, and forensic insights.
0
0
2
“Agentic AI” is echoing everywhere, but what can it really do for your SOC? 🔒 ✏️ Our Agentic Cloud Security Blueprint outlines how AI is evolving from passive guidance to autonomous action. Start your agentic AI journey the right way—with a blueprint 👉 https://t.co/gSc3bqjRcC
0
1
2
Your tools may spot suspicious events, but can they connect the dots? 🧩 Multi-stage attacks seem like normal behavior—until its too late. 🔎 See how Sysdig Runtime Behavioral Analytics correlates actions over time to expose the cloud threats others miss: https://t.co/KgtkYHmGv0
sysdig.com
Sysdig runtime behavioral analytics detects multi-stage cloud attacks by correlating events over time, reducing noise, false positives, and response time.
0
1
6
☑️ Compliance checks a box, but it doesn’t make you bulletproof. ❌ 💳 See how Partior, blockchain fintech backed by global banks, secures its payments network—leveraging Sysdig Sage™ for deep visibility & AI-powered triage across their multicloud setup: https://t.co/bnm3Vrt2qP
0
0
4
Heard of the OSS security tool that watches your workloads like a h̶a̶w̶k̶ falcon? 👀 Meet @Falco_org—the runtime security engine that alerts you the second suspicious activity is detected across your cloud infrastructure. 🚩 🎥 Here's how Falco works 👉 https://t.co/0PwaPDmPbg
1
0
2
⚠️ AI is transforming cybersecurity & the stakes are rising fast — is your org ready? 🎥 On @TechstrongTV, Sysdig’s @Zatomas & @ercarter explore what the future of security looks like in an AI-first world & how to integrate AI responsibly. Watch now 👇
techstrong.peek.link
Emanuela Zaccone and Eric Carter from Sysdig discuss how AI is reshaping cybersecurity, risk, and trust in modern security models.
0
2
7
🚨 48hrs after React2Shell went public, Sysdig TRT uncovered EtherRAT 🐀 — a stealthy implant hiding in the Ethereum blockchain, persisting through reboots & evading cleanup. With ties to North Korea, this threat goes beyond cryptomining. Full attack chain: https://t.co/OK0numCQ4f
sysdig.com
A novel Ethereum-powered backdoor, EtherRAT, is being deployed through the React2Shell vulnerability (CVE-2025-55182). With multi-layer persistence, blockchain C2, and self-updating payloads, this...
0
6
8
💬 If your AI is still just "an assistant" you're already behind. Cloud security is entering the agentic era—where intelligent systems don't just think, they act. 🦾 See why this isn't more GenAI hype: this is the start of autonomous, AI-driven SecOps. ⤵️ https://t.co/a3dgkm0Oj7
sysdig.com
Discover how AI agents work, how they differ from generative AI, and why they’re transforming cloud security. Learn real-world use cases and how Sysdig leverages autonomous AI to strengthen defenses.
0
0
3
🚨 Unauthorized RCE. Max severity. ~100% success rate. ⚛️ React2Shell enables remote code execution with one HTTP request. React & Next.js are vulnerable out-of-the-box—exploitation already underway. 🔎 New CVE analysis + Falco detections from Sysdig TRT: https://t.co/QomHlLM9nV
sysdig.com
Learn how to detect and fix React2Shell, the unauthenticated RCE behind CVE-2025-55182 and CVE-2025-66478, with Sysdig’s threat research, Falco rules, and remediation steps.
0
0
3
✔️ Real sumo wrestling 🤼 — ✔️ Real supercars 🏎️ — ✔️ Real-time cloud defense 🛡️ — Thank you, 𝗔𝗪𝗦 𝗿𝗲:𝗜𝗻𝘃𝗲𝗻𝘁, for keeping it real. 🙌 From the Sysdig booth, to the CISO Happy Hour, and all the hallway convos in between — we loved chatting with you all about what’s
0
0
1
Great products come from teams that think out loud. 🚀 🇮🇹 In Milan, @Zatomas, Flavio Mutti & @IamLucaMilan from our Product Team dive into the curiosity, passion & cross-functional magic behind an AI breakthrough like Sysdig Sage™. Join our mission 👉 https://t.co/rXjStrhvsq
0
2
6
⚛️ Quantum is leaving the lab & heading to the cloud—a real security concern for everyone. Why? 👉 Because Q-Day is coming (the day quantum computers breaks current encryption algorithms). 🔐 ⚠️ See why post-quantum readiness is now a strategic necessity: https://t.co/Invikbj3ia
sysdig.com
Learn how quantum computing threatens today’s encryption, what Q-Day means, and how organizations can prepare for a secure post-quantum future.
1
0
3
🎲 Sysdig is back in Vegas for #AWSreInvent! Experience cloud security the right way with real-time defense powered by agentic AI + runtime insights—Booth 1459. Plus: 🥋 Sumo Slam Jam 🏁 Supercar race ⚡ Agentic AI lightning talk w/ @ercarter See more ⤵️ https://t.co/v5HeXvJcD5
pathfactory.peek.link
Discover where you can meet the Sysdig team at AWS re:Invent 2025 in Las Vegas.
0
2
5
🗳️ Vote for Sysdig! 📣 Sysdig Sage™ is a 2025 DevOps Dozen finalist for Best Application of Agentic AI in a DevOps Tool—proving the power of agentic AI + live cloud data. 🚀 Vote by Dec 31 if you think Sysdig Sage is the future of secure DevOps. ⤵️
surveymonkey.peek.link
0
0
3
🦃 Sysdig's feeling grateful—so we’re gifting a plate-full (of Lumin 🐙) this Thanksgiving: a 20" slate charcuterie tray! 🎁 Enter drawing: 👍 Like this = 1 entry 🔁 Repost = 2 entries 🥐 Reply w/ your fave Thanksgiving dish = 3 entries May the odds be ever in your flavor! 🍽️
0
0
2
Used by 60% of the Fortune 500, @Falco_org is the open source standard for runtime security. 🎥 At KubeCon, core maintainer @Leogrease talks real-time detection & how AI may reshape OSS. Join Sysdig's Open Source Community for exclusive Falco insights: https://t.co/wqPMj8G689
1
1
7
FACT 👉 Vibe coding is a speed boost, not a safety net. ⚠️ 💡 In @thenewstack, Sysdig's own Crystal Morin shares a practical playbook for reducing security risks in AI-generated code with STRIDE threat modeling & the OWASP Top 10 for LLM apps:
thenewstack.peek.link
Here’s the hardest pill to swallow: Security doesn’t stop even after the code is reviewed, approved and committed.
0
2
6
🚨 A new variant of the self-propagating Shai-Hulud worm is spreading—affecting 25k GitHub repos & actively trojanizing NPM packages. Sysdig TRT exposes how v2 hijacks preinstall scripts, spawns fake repos & abuses GitHub workflows to exfiltrate secrets:
sysdig.com
A new variant of the Shai-Hulud (Sha1-Hulud) worm is spreading through backdoored NPM packages, compromising nearly 1,000 packages and leaking credentials from over 25,000 GitHub repositories....
0
0
5
The key to securing complex cloud architectures? Start with a blueprint. 📐 💡 Our new VM Blueprint will help you align visibility, prioritization & remediation the right way. Think your org is prepared for modern cloud risks? Take the self-assessment 👉 https://t.co/Y6MCF3yDCU
0
0
6
🚨 CISA warns an old Linux vulnerability is still being used in active ransomware campaigns. CVE-2024-1086 persists on unpatched hosts & older kernel versions—giving attackers a path to root access. 🔎 Here's how runtime behavioral analytics can spot it:
sysdig.com
Discover how attackers are actively exploiting CVE-2024-1086, a decade-old Linux kernel netfilter vulnerability now used in ransomware campaigns. Learn how this privilege-escalation flaw works, why...
0
0
4