MIxmode Blog

MixMode Product Updates, Stories on Cybersecurity, AI, and Everything in Between.

Understanding the Cookie-Bite MFA Bypass Risk

By MixMode Threat Research | May 27, 2025

The Cookie-Bite attack is an advanced evolution of Pass-the-Cookie exploits. This tactic bypasses Multi-Factor Authentication (MFA) by leveraging stolen authentication cookies—such as Azure Entra ID’s ESTSAUTH and ESTSAUTHPERSISTENT—to impersonate users.

Read More

The State of AI in Cybersecurity 2025: What’s Working, What’s Lagging, and Why It Matters Now More Than Ever

By MixMode Threat Research | May 20, 2025

This second annual study offers a deeper look at how organizations are using AI to detect and respond to attacks faster, where it’s making the biggest impact, and what’s holding adoption back.

Read More

Safeguarding SAP Systems Amid Rising Financial Fraud and Economic Stress

By MixMode Threat Research | May 14, 2025

SAP systems are the backbone of enterprise finance—and they’re under attack. As economic pressures rise, so do attempts to exploit financial platforms. From insider threats to ransomware and zero-day vulnerabilities, SAP’s critical role in handling billions of dollars daily makes it a high-value target. The recent disclosure of CVE-2025-31324, a critical zero-day in SAP NetWeaver (CVSS 10.0), exposed just […]

Read More

How China’s Admission Reinforces the Urgency for AI-Powered, Preemptive Cybersecurity

By Matt Shea | May 8, 2025

In December, a senior Chinese cyber official offered what U.S. representatives took as tacit admission: China was behind a series of cyber intrusions targeting U.S. critical infrastructure. As reported by The Wall Street Journal, this extraordinary moment came during a closed-door meeting in Geneva—one that has since confirmed what many cybersecurity professionals have long suspected: the next stage of overt cyber action might be here.

Read More

MixMode Releases 2025 State of AI in Cybersecurity Report

By Christian Wiens | May 6, 2025

MixMode, a leader in AI-powered cybersecurity, today released State of AI in Cybersecurity Report 2025, its second annual report, independently conducted by the Ponemon Institute. Based on a survey of 685 U.S. IT and security professionals, the report reveals how organizations, especially in Critical Infrastructure, SLED, and U.S. Federal sectors, are adopting AI to counter evolving cyber threats.

Read More

The Rise of AI-Driven Cyberattacks: Accelerated Threats Demand Predictive and Real-Time Defenses 

By MixMode Threat Research | May 1, 2025

Artificial intelligence (AI) is transforming industries, but it’s also empowering cybercriminals to launch sophisticated, high-speed cyberattacks. AI-driven attacks, particularly those orchestrated by autonomous AI agents, operate at an accelerated pace, compressing the window for detection and protection.

Read More

WarGames – it’s not 1983 anymore

By MixMode Threat Research | April 29, 2025

China’s state-sponsored cyber operations, driven by groups like Volt Typhoon, Salt Typhoon, Brass Typhoon, and APT41, and amplified by techniques like Fast Flux DNS, are not chasing Hollywood apocalypse—they’re seizing America’s networks, turning our infrastructure into a weapon against us.

Read More

Volt Typhoon, Salt Typhoon & APT41: This is No Longer a Drill 

By MixMode Threat Research | April 24, 2025

New threat intelligence confirms what many infrastructure leaders have long feared: Chinese state-sponsored threat groups are not only capable of infiltrating U.S. critical systems—they already have.

Read More

Why the 2025 PyPI Attack Signals a New Era in Cloud Risk

By MixMode Threat Research | April 16, 2025

The 2025 PyPI supply chain attack is a stark reminder of just how vulnerable cloud ecosystems remain to sophisticated, stealthy, and evolving threats.

Read More
Geopolitical and Hacktivist Nightmare

The Fast Flux DNS Threat: A Call to Action Against a Geopolitical and Hacktivist Nightmare

By MixMode Threat Research | April 3, 2025

Artificial Intelligence (AI) has quickly become an integral part of modern workflows, with AI-powered applications like copilots, chatbots, and large-scale language models streamlining automation, decision-making, and data processing. However, these same tools introduce significant security risks—often in ways organizations fail to anticipate.

Read More

About MixMode

MixMode is a no-rules Cybersecurity platform, serving large enterprises with big data environments across a variety of industries. MixMode delivers a patented, self-learning platform that acts as the Intelligence Layer℠ to detect both known and unknown attacks, including novel attacks designed to bypass legacy cyber defenses. This is accomplished in real-time, across any cloud or on-premise data stream. Trusted by global entities in banking, public utilities and government sectors, industry cyber leaders rely on MixMode to protect their most critical assets. The platform dramatically improves the efficiency of SOC teams’ previously burdened with writing and tuning rules and manually searching for attacks. The MixMode platform can be deployed remotely, with no appliances, in under an hour with business outcomes evident within days. Backed by PSG and Entrada Ventures, the company is headquartered in Santa Barbara, CA. Learn more at www.mixmode.ai.