MITIGA LABS

Cutting-Edge Cloud Research.
Real-World Cloud Defense.

Welcome to Mitiga Labs, our research and innovation arm built to expose how modern attackers operate in Cloud and SaaS. We break down real campaigns and publish practical guidance tohelp security teams stop cloud attacks from having impact. Our research powers the Zero-Impact Breach Mitigation approach at the core of the Mitiga platform.

Top 10 Cloud Threats in 2025

MITIGA LABS TEAM

A guide for defenders facing the realities of cloud-first attacks.We highlight where prevention fails and how Zero-Impact Breach Mitigation changes the outcome.

Purposeful Insights on the Cloud Security Frontier

Mitiga Labs is where we tear into the latest Cloud, SaaS, AI, and Identity attacks. Our researchers decode how adversaries operate and turn that knowledge into defense strategies that stop cloud attacks from having impact. Every discovery fuels Mitiga’s Zero-Impact Breach Mitigation.

Latest from the Labs

Explore the latest discoveries, deep dives, and technical how-tos from the Mitiga Labs team. Our research is dedicated to informing defenders and disrupting attackers.

CORSLeak: Abusing IAP for Stealthy Data Exfiltration

When people talk about “highly restricted” cloud environments, they usually mean environments with no public IPs, no outbound internet, and strict VPC Service Controls locking everything down.

Read More

RESEARCHERS

Ariel Kalman

From Rogue OAuth App to Cloud Infrastructure Takeover

In a recent incident response investigation, Mitiga uncovered a chilling attack that started with a single compromised email inbox and spiraled into a full-blown takeover of an organization's cloud infrastructure.

Read More

How Threat Actors Used Salesforce Data Loader for Covert API Exfiltration

In the course of just one week, multiple organizations have gone public regarding a breach in their SaaS CRM application.

Read More

RESEARCHERS

Nir Varon

God-Mode in the Shadows: When Security Tools Become Cloud Risks

By the time the alarms go off, it’s often too late. A trusted third-party security tool, one that promised to protect your cloud and SaaS environments, has been operating with unchecked ‘god-mode’ privileges.

Read More

RESEARCHERS

Nir Varon

Raviv Rachmiel

Hackers in Aisle 5: What DragonForce Taught Us About Zero Trust

A major social engineering campaign by DragonForce hit UK retailers leading to ransomware deployment and data exfiltration. Mitiga Labs examines the attack and highlights where Zero Trust could have stopped it.

Read More

RESEARCHERS

Jed Morley

Research Team

Austin Bollinger

Principal Incident Responder

Ariel Kalman

Senior Security Researcher

Ariel Ainhoren

Head of Cloud Security Research

Ucha Gobejishvili

Senior Incident Responder

Gavriel Fried

Principal Cloud Security Researcher

Idan Cohen

Senior Cloud TDIR

Jed Morley

Senior Incident Responder

Nir Varon

Security analyst

Roei Sherman

Senior Director | Mitiga Research

Mitiga Helios AIDR

The next critical capability for Mitiga's Al-native CDR platform is here.
Explore our solution that empowers and automates SecOps, protects AI infrastructure, and defends against AI-sclaed attacks.

Featured Videos

Get resilient