<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0">
    <channel>
        <title><![CDATA[ZeroFox Blog posts | RSS Feed]]></title>
        <description><![CDATA[Digital Risk Protection platform built for enterprises]]></description>
        <link>https://www.zerofox.com</link>
        <generator>RSS for Node</generator>
        <lastBuildDate>Sat, 13 Jun 2026 10:34:54 GMT</lastBuildDate>
        <atom:link href="https://www.zerofox.com/rss.xml" rel="self" type="application/rss+xml"/>
        <pubDate>Sat, 13 Jun 2026 10:34:54 GMT</pubDate>
        <copyright><![CDATA[Copyright 2026 By ZeroFox. All rights reserved]]></copyright>
        <item>
            <title><![CDATA[Malicious Insider Threats: How Trusted Employees Turn Into Attackers]]></title>
            <description><![CDATA[<p>TL;DR on Malicious Insiders What Are Malicious Insider Threats? Intentional, or malicious, insider threats represent a significant attack vector in which likely disgruntled employees compromise organizations by misusing access to sensitive networks and data or abusing advantageous positioning to enact harm against their employer. Unlike accidental insider threats, intentional insider threat actors take deliberate and [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/malicious-insider-threats-how-trusted-employees-turn-into-attackers</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/malicious-insider-threats-how-trusted-employees-turn-into-attackers</guid>
            <dc:creator><![CDATA[Casey Bjorn]]></dc:creator>
            <pubDate>Thu, 11 Jun 2026 10:31:03 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/06/iStock-1033973812.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[Malware Sandboxing for SOC Teams: How to Detonate Files and URLs Safely]]></title>
            <description><![CDATA[<p>Most SOC shifts start the same way: a queue full of artifacts that might be malicious and not enough time to investigate every one deeply. A flagged attachment, a URL from a newly registered domain. Each one needs a verdict. Most are clean, but the one that isn&#8217;t could be the beginning of a breach, [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/malware-sandboxing-detonate-files</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/malware-sandboxing-detonate-files</guid>
            <dc:creator><![CDATA[Maddie Bullock]]></dc:creator>
            <pubDate>Wed, 10 Jun 2026 09:03:41 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/05/iStock-2206653076.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[Trust But Verif-AI: Because &#8220;Fine&#8221; Is Not an Answer]]></title>
            <description><![CDATA[<p>Every parent knows the answer &#8220;fine&#8221; covers a lot of ground. It can mean things genuinely are fine. It can also mean a failed exam, a friendship falling apart, or a situation the child has already decided you don’t need to know about. The word is technically an answer, but it’s not information. A good [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/trust-but-verif-ai</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/trust-but-verif-ai</guid>
            <dc:creator><![CDATA[Neil Correa]]></dc:creator>
            <pubDate>Mon, 08 Jun 2026 11:31:18 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/06/iStock-2153913550.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[Security Threats at the 2026 FIFA World Cup: What Intelligence Reveals Before Kickoff]]></title>
            <description><![CDATA[<p>Tickets for the 2026 FIFA World Cup are being sold on Telegram and credentials tied to fifa.com accounts are circulating on dark web marketplaces. A threat actor is even advertising server access allegedly linked to New York FIFA infrastructure. And the tournament hasn&#8217;t even started yet. The 2026 FIFA World Cup will be the biggest [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/security-threats-at-the-2026-fifa-world-cup-what-intelligence-reveals-before-kickoff</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/security-threats-at-the-2026-fifa-world-cup-what-intelligence-reveals-before-kickoff</guid>
            <dc:creator><![CDATA[Maddie Bullock]]></dc:creator>
            <pubDate>Fri, 05 Jun 2026 11:19:16 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2025/06/iStock-978321712.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[Malware Attacks: More Than Just Ransomware]]></title>
            <description><![CDATA[<p>Ransomware is all the buzz, but it isn&#8217;t the only malware attack. Take a closer look at malware to better understand the risks and how they work together.</p>
]]></description>
            <link>https://www.zerofox.com/blog/malware-attacks-more-than-just-ransomware</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/malware-attacks-more-than-just-ransomware</guid>
            <dc:creator><![CDATA[ZeroFox Team]]></dc:creator>
            <pubDate>Wed, 03 Jun 2026 10:08:05 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/05/iStock-1298325705.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[Detonate Malware Safely: When to Sandbox, Block, or Escalate]]></title>
            <description><![CDATA[<p>Every suspicious artifact that hits a SOC analyst&#8217;s queue forces the same decision: do I need to understand this before I act, or do I already know enough to act now? Get it wrong in one direction and you waste time analyzing something you should have blocked ten minutes ago. Get it wrong in the [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/detonate-malware-safely</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/detonate-malware-safely</guid>
            <dc:creator><![CDATA[Maddie Bullock]]></dc:creator>
            <pubDate>Wed, 27 May 2026 09:00:00 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/05/iStock-2221631233.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[How a Leading Airline Shut Down Social Impersonators and Phishing Comments in Under a Week]]></title>
            <description><![CDATA[<p>A customer drops a frustrated comment under a post: “Can someone help me with my booking?” Within minutes, a “support” account replies with a friendly tone, a sense of urgency, and a link that definitely doesn’t belong there. It looks and sounds like customer service, but it’s not. In reality, it&#8217;s a scammer acting at [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/airline-shut-down-social-impersonators-and-phishing-comments</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/airline-shut-down-social-impersonators-and-phishing-comments</guid>
            <dc:creator><![CDATA[ZeroFox Team]]></dc:creator>
            <pubDate>Wed, 20 May 2026 11:16:38 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/05/iStock-2147717228.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[When Data Means Conversations and Code: How AI-Powered Adversaries Are Rewriting the Rules of Targeted Attacks]]></title>
            <description><![CDATA[<p>For years, the security industry drew a fairly clear line around what &#8220;sensitive data&#8221; meant. Personal information, financial records, health data: the structured, regulated categories that compliance frameworks were built to protect. Encrypt it, tokenize it, and restrict access to it. The threat model was straightforward: if you protect the database, you protect the business. [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/ai-powered-adversaries</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/ai-powered-adversaries</guid>
            <dc:creator><![CDATA[Neil Correa]]></dc:creator>
            <pubDate>Wed, 13 May 2026 10:10:04 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2025/12/iStock-1332350872-2.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[When Phishing Takedowns Are Not Enough: ZeroFox vs. Netcraft for Enterprise Brand Protection]]></title>
            <description><![CDATA[<p>Netcraft has been in the internet security game since 1995, and they&#8217;ve earned a credible reputation for fast phishing detection and domain phishing takedowns. If your primary concern is malicious domains, they bring speed, automation, and deep relationships with internet infrastructure providers. But modern brand abuse doesn&#8217;t stop at phishing sites. Threat actors now impersonate [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/zerofox-vs-netcraft-enterprise-brand-protection</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/zerofox-vs-netcraft-enterprise-brand-protection</guid>
            <dc:creator><![CDATA[ZeroFox Team]]></dc:creator>
            <pubDate>Mon, 11 May 2026 08:56:33 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2025/10/Screenshot-2025-10-06-at-9.27.29-AM-1049x675.png" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[How Malware Sandboxing Closes the Confidence Gap in External Threat Intelligence]]></title>
            <description><![CDATA[<p>I&#8217;ve spent enough time in investigation queues to know what a bad workflow feels like. You get an alert. Something looks wrong. You already know it&#8217;s probably malicious, but &#8220;probably&#8221; doesn&#8217;t close a ticket or justify a takedown. You need confirmation. So you leave the platform, find the right tool, upload the file, wait, get [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/malware-sandboxing-closes-gap-in-external-threat-intelligence</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/malware-sandboxing-closes-gap-in-external-threat-intelligence</guid>
            <dc:creator><![CDATA[Josh Mayfield]]></dc:creator>
            <pubDate>Thu, 07 May 2026 10:44:04 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/05/iStock-1730012119.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[What We Feel Makes a Leader in the Gartner® Magic Quadrantᵀᴹ for Cyberthreat Intelligence Technologies]]></title>
            <description><![CDATA[<p>The cyber threat intelligence market is evolving from pieced together systems to unified platforms. What used to be a landscape of necessary but siloed tools, one for digital risk protection, another for threat feeds, another for takedowns, is converging into a single discipline where discovery, validation, and disruption all need to work together. We think [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/gartner-magic-quadrant-leader</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/gartner-magic-quadrant-leader</guid>
            <dc:creator><![CDATA[ZeroFox Team]]></dc:creator>
            <pubDate>Tue, 05 May 2026 09:21:38 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/05/GartnerMQ_Asset-Card-Blog-Hero-2-2.png" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[PSI Regional Forecasts: Because Your Security Team Shouldn’t Be the Last to Know]]></title>
            <description><![CDATA[<p>ZeroFox PSI Regional Forecasts give security teams a monthly forward look at the threats most likely to affect their operations. Delivered directly in the ZeroFox platform, before incidents happen. The Problem With Reactive Security Most physical security programs run in the same loop: an incident happens, the team mobilizes, and an after-action report gets filed. [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/psi-regional-forecasts-because-your-security-team-shouldnt-be-the-last-to-know</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/psi-regional-forecasts-because-your-security-team-shouldnt-be-the-last-to-know</guid>
            <dc:creator><![CDATA[Esmeralda Sayagues]]></dc:creator>
            <pubDate>Tue, 21 Apr 2026 09:50:54 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/04/iStock-1334455983.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[The Claude Mythos Problem: AI Vulnerability Scanning Has Trust Issues]]></title>
            <description><![CDATA[<p>When frontier AI scanning capability lands inside organizations with competitive incentives and Anthropic&#8217;s oversight telemetry remains unspecified, the threat model gets a lot wider than jailbreakers and dark web exploit sellers. Anthropic’s announcement of Claude Mythos Preview landed the way most frontier AI milestones do: as a security story dressed in a safety narrative. The [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/the-claude-mythos-problem</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/the-claude-mythos-problem</guid>
            <dc:creator><![CDATA[Nico Flores]]></dc:creator>
            <pubDate>Mon, 20 Apr 2026 11:27:45 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/04/iStock-1138585444.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[Seeing Risk Isn&#8217;t Stopping Risk: What to Consider When Choosing an ASM Solution]]></title>
            <description><![CDATA[<p>Your security team just got another report. Hundreds of exposed assets with dozens of flagged vulnerabilities. A dashboard full of findings, color-coded by severity, timestamped, and ready for review. None of them have been fixed yet. This is the reality for most SOC teams operating with an attack surface management tool today. Somewhere between &#8220;we [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/seeing-risk-isnt-stopping-risk-what-to-consider-when-choosing-an-asm-solution</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/seeing-risk-isnt-stopping-risk-what-to-consider-when-choosing-an-asm-solution</guid>
            <dc:creator><![CDATA[Maddie Bullock]]></dc:creator>
            <pubDate>Wed, 08 Apr 2026 10:48:54 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/04/iStock-1491632431-1200x640.jpg" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[How to Quantify the Business Value of ZeroFox Threat Intelligence (And Why Forrester Did It For You)]]></title>
            <description><![CDATA[<p>Let&#8217;s get the uncomfortable truth out of the way first: proving the value of threat intelligence is hard. Not because the value isn&#8217;t real, but because the best outcomes in security are the things that didn&#8217;t happen. There’s value in the avoided incidents. Takedowns that stopped a phishing campaign before it touched a single customer. [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/quantify-the-business-value-of-zerofox-forrester-tei</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/quantify-the-business-value-of-zerofox-forrester-tei</guid>
            <dc:creator><![CDATA[Maddie Bullock]]></dc:creator>
            <pubDate>Wed, 01 Apr 2026 12:27:09 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/04/Forrester-TEI_Blog-Hero.png" length="0" type="image/jpeg"/>
        </item>
        <item>
            <title><![CDATA[What the New NIST Secure DNS Deployment Guidance Means to Enterprises, According to a ZeroFox Expert]]></title>
            <description><![CDATA[<p>NIST&#8217;s updated guidance on secure DNS deployment has direct implications for how organizations protect their external digital presence. This is what you need to act on. The Domain Name System has long been treated as plumbing, like invisible infrastructure that just works. That perception is increasingly dangerous.&nbsp; In March 2026, the National Institute of Standards [&hellip;]</p>
]]></description>
            <link>https://www.zerofox.com/blog/new-nist-secure-dns-deployment-guidance</link>
            <guid isPermaLink="false">https://www.zerofox.com/blog/new-nist-secure-dns-deployment-guidance</guid>
            <dc:creator><![CDATA[Carlos Alvarez]]></dc:creator>
            <pubDate>Thu, 26 Mar 2026 09:30:35 GMT</pubDate>
            <enclosure url="https://content.zerofox.com/wp-content/uploads/2026/03/iStock-1396014583.jpg" length="0" type="image/jpeg"/>
        </item>
    </channel>
</rss>