Our Security Research Team detonated an infected npm package inside a K8s pod to see how Stream handles fast, multi-stage behavior end to end.
Nov 30, 2025 · 2:48 PM UTC
1
10
Here's what we learned:
1) Stream's CDR built-in anomaly detection engine perfectly caught this unknown threat 🤑
2) How Stream correlates credential harvesting, exfil attempts, fileless techniques, and cross-service behaviors in real time. 💥
1
7
Stream's users don't have to wait for signature database updates to detect zero-day attacks. Do you?
1
22
Here's the deep dive into how we investigated the Shai-Hulud 2.0-style attack we created: stream.security/post/the-sha…
92

