Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Stop Orchestrating Around Bad Detections

Security operations teams are drowning in telemetry. Rule-based detections still do the heavy lifting, but they often force you to choose between high noise and blind spots, especially when adversaries live off the land and blend into legitimate activity. Over the past year at BlueVoyant, we’ve been testing and deploying Microsoft’s User and Entity Behavioral Analytics (UEBA) capabilities across our customer base, and the results have been eye-opening.

Lorem Ipsum Revisited

BlueVoyant Security Operations Center (SOC) and Threat Fusion Cell (TFC) researchers have been tracking an active ClickFix campaign that manipulates users into believing their web browser requires a security update. If the user complies, the ClickFix lure initiates a multi-stage infection chain that ultimately deploys the Lorem Ipsum Loader, a malware family BlueVoyant first documented in May 2026.

BlueVoyant AI: Our Shared Security Roadmap

Today, we’re launching BlueVoyant AI. In my first months as CEO, I’ve had the chance to meet with many of you. What struck me most is the scope and importance of what you’re protecting, and how seriously you carry that responsibility. What also came through clearly is that your vision for the future of security aligns with ours.

How BlueVoyant's ASIM-First Strategy Simplifies Threat Detection in Microsoft Sentinel

Earlier this year, BlueVoyant adopted a new detection strategy built on the Advanced Security Information Model (ASIM). For those unfamiliar, ASIM is Microsoft's normalisation layer that standardises log data across products into consistent schemas. Our approach is simple: The result? Dramatically faster use case development and cleaner, more maintainable detection logic.