GreyNoise
banner
greynoise.io
GreyNoise
@greynoise.io
GreyNoise analyzes Internet background noise. Use GreyNoise to remove pointless security alerts, find compromised devices, or identify emerging threats.
If you missed it: 395 organizations compromised across 48 countries. Hundreds of AI agents. One campaign against PaperCut NG/MF.

We mapped the attack flow below⬇️

Read Agents Gone Wild: www.greynoise.io/blog/ai-orch...
September 11, 2026 at 6:33 PM
The highest-volume malicious activity GreyNoise observed this week was a request for a file. Environment files, cloud configuration and repository configuration are all returned by a correctly functioning web server to anyone who asks for the right path.

www.greynoise.io/resources/at...
September 10, 2026 at 7:24 PM
Hundreds of AI agents powered a campaign against PaperCut NG/MF. What did the operation reveal about agentic attacks and their limits?

Read GreyNoise’s latest blog ⬇️
Agents Gone Wild: An AI-Orchestrated Global Campaign Against PaperCut NG/MF
11 organizations compromised in 26 seconds. GreyNoise breaks down the AI-enabled campaign against PaperCut NG/MF that hit 440 instances across 48 countries.
www.greynoise.io
September 9, 2026 at 1:11 PM
This week exploitation attempts arrived in same-day cohorts across unrelated flaws.

Customers get the full weekly brief. Our public At The Edge one-pager is attached + 🔗 www.greynoise.io/resources/at...
September 2, 2026 at 8:57 PM
GreyNoise turns 9️⃣ today! 🥳 We've been busy this past month, and to mark the occasion, we've got a packed NoiseLetter. Thank you all for being a part of the GreyNoise Community and here's to nine years of cutting through the noise, together.
NoiseLetter August 2026
In the latest edition of the NoiseLetter we've got new integrations, product updates, and fresh content to dig into.
www.greynoise.io
September 1, 2026 at 4:05 PM
Great Day 1 at Fal.Con 2026 ✅ Lots of good conversations on the floor. If you're here this week, come find us at Booth #1757.
September 1, 2026 at 3:42 PM
We're excited to announce an expanded integration between GreyNoise and the CrowdStrike Falcon® platform 🎉

The expanded integration includes a purpose-built Falcon Next-Gen SIEM dashboard, correlation rules, and SOAR playbooks.
GreyNoise + CrowdStrike: Real-Time Edge Intelligence in Falcon Next-Gen SIEM and Charlotte Agentic SOAR
Today we’re announcing an expanded integration between GreyNoise and the CrowdStrike Falcon® platform including a purpose-built Falcon Next-Gen SIEM dashboard, correlation rules that detect allowed in...
www.greynoise.io
August 31, 2026 at 4:33 PM
Threat actors are forging the crawler names of OpenAI, Anthropic, DeepSeek and five other AI companies to request .env files and keys.

Six of those names came from 824 addresses in matched volume. None asked for robots.txt in this
traffic.

Full analysis ⬇️
Threat Actors Are Posing as OpenAI, Anthropic and DeepSeek to Target Credentials and Secrets
GreyNoise is observing automated scanners posing as the web crawlers of OpenAI, Anthropic, DeepSeek, and Fortune 500 companies, using forged user agents while requesting the files where misconfigured ...
www.greynoise.io
August 28, 2026 at 1:07 PM
Most of the Log4Shell probing GreyNoise observed this week came from a single commercial scanning service.

Our public At The Edge one-pager is attached. Customers get the full weekly brief.

🔗 www.greynoise.io/resources/at...
August 26, 2026 at 4:46 PM
Back to Vegas we go! 🎲🎰 If you're headed to Fal.Con 2026, come find us at Booth #1757. We'll be showing how the GreyNoise + CrowdStrike integration helps analysts cut through internet noise and focus on threats that are actually targeting them.

Book a meeting: info.greynoise.io/greynoise-fa...
GreyNoise at Fal.Con 2026
Engage with GreyNoise at Fal.Con. Stop by our booth #1757, meet with us, or attend our event.
info.greynoise.io
August 20, 2026 at 3:50 PM
Four findings this period, one shared exposure pattern: each involves a surface an organization puts on the internet deliberately and then rarely inventories completely.

🔗https://www.greynoise.io/resources/at-the-edge-clear-081726
August 19, 2026 at 9:29 PM
The new GreyNoise Visualizer just dropped 💥
We redesigned the GreyNoise Visualizer to match how defenders actually work.

Log in and hit "Try the New Visualizer" to explore it today.

🔗https://www.greynoise.io/blog/new-way-to-navigate-greynoise
August 17, 2026 at 6:16 PM
NoiseFest 2026 is a wrap. What a ride 🚎 🏵️✌️

Thank you to everyone who came out last week and made it such an incredible night. And a huge thank you to our wonderful sponsors: Sublime Security, Mallory, StepSecurity, and ProjectDiscovery.

See you next year for NoiseFest 2027.....
August 14, 2026 at 7:10 PM
We’re thrilled to welcome @imposecost.bsky.social to GreyNoise as our new SVP of Adversary Operations⚡
GreyNoise Welcomes New SVP of Adversary Operations
Former Google Threat Intelligence leader joins GreyNoise as SVP of Adversary Operations to advance proactive discovery and disruption of cyber threats.
www.greynoise.io
August 13, 2026 at 4:05 PM
Four findings this period, one shared exposure pattern: each involves a system that holds credentials or files for a secondary environment, so a successful attempt against one would likely open the next without a second exploit.

🔗https://www.greynoise.io/resources/at-the-edge-clear-081026
August 12, 2026 at 4:01 PM
This week in GreyNoise data, rented crawlers probed for credentials and configuration secrets across widely deployed web software.

Customers get the full weekly brief. Our public At The Edge Clear one-pager: www.greynoise.io/resources/at...
July 22, 2026 at 3:20 PM
New in the GreyNoise Visualizer: the Intelligence Dashboard. Build one saved view of the threats you actually track, then watch it stay current on its own.

Read the launch blog: greynoise.io/blog/intelli...
July 21, 2026 at 8:00 PM
The June NoiseLetter is live! In this edition, we're diving into GreyNoise use cases, sharing the latest product releases, and getting ready for our biggest event of the year, NoiseFest.
NoiseLetter June 2026
In this edition, we're diving into GreyNoise use cases, sharing the latest product releases, and getting ready for our biggest event of the year, NoiseFest.
www.greynoise.io
July 14, 2026 at 7:44 PM
The Threat Brief Library is now live in the GreyNoise Visualizer! Browse, search, filter, and download weekly At The Edge briefs, Executive Situation Reports, and more. All built on primary-source data from our global sensor network.

Check it out: www.greynoise.io/blog/threat-...
July 13, 2026 at 9:40 PM
NoiseFest is just a few weeks away!🎉 If you're in Las Vegas for #BlackHat or #DEFCON, come join us for a night of cold drinks, good company, and 60s and 70s vibes. 🏵️

📅Thursday, August 6th | 6–9 PM PT | Las Vegas
🔗RSVP: info.greynoise.io/events/black...

#NoiseFest #GreyNoise #cybersecurity
GreyNoise - NoiseFest at BlackHat 2026
Join us for NoiseFest at BlackHat/DEFCON on Thursday, August 6th. Enjoy drinks, snacks, and engaging conversations with your peers. RSVP now!
info.greynoise.io
July 13, 2026 at 5:56 PM
This week a long-dormant Palo Alto flaw came back to life in GreyNoise data.

Separately, two coordinated hosting fleets ran the week's highest-volume web exploitation, roughly 7.5M connection attempts.

🔗https://www.greynoise.io/resources/at-the-edge-clear-070626
July 8, 2026 at 8:03 PM
Four things that caught our eye at the edge this week: www.greynoise.io/resources/at...
June 24, 2026 at 7:02 PM
Three things that caught our eye at the edge this week:

- One host mapped the enterprise edge.
- A pair ran a Hikvision camera RCE (CISA KEV) on shared tooling.
- VPN logins stayed under steady pressure.

This week's At The Edge Clear 👉 www.greynoise.io/resources/at...
June 18, 2026 at 6:17 PM
We're in London tomorrow for CrowdStrike #CrowdTour2026. If you're attending our team would love to connect! Schedule some time to meet with us: info.greynoise.io/crowdtour-20...

#CyberSecurity #GreyNoise #ThreatIntel
June 16, 2026 at 2:35 PM
GreyNoise At The Edge Intel Brief (June 1-8, 2026)

This week attackers went after the front door of remote access — RDP, SSL VPN, router management — not new CVEs.

🔗 www.greynoise.io/resources/at...
June 12, 2026 at 8:24 PM