Mars Blog

Research, insights, security intelligence, and news from the Mars team.

Thought LeadershipSeptember 22, 2026

Cutting SIEM cost is a detection engineering problem

Gartner named Mars Security as an Example Technology in the DEAS category. We think the naming matters less than the argument it sits inside.

By Shahaf GaliliRead more
Product UpdateSeptember 16, 2026

Some attacks don't fire an alert. They fail a hypothesis. - introducing MARS playbooks

Hunt Templates are live in Mars - and they're not glorified saved-search folders. Here's what's actually inside one.

By Shahaf GaliliRead more
Thought LeadershipSeptember 14, 2026

We've been optimizing the wrong half of security

Vulnerability management was never going to scale. Detection engineering is where the next security dollar actually belongs.

By Aaron MogRead more
Product UpdateSeptember 8, 2026

From Threat Intel to Detection Coverage - Automatically

Security teams don't have a shortage of threat intelligence. They have a shortage of time to turn it into working detections.

By Shahaf GaliliRead more
SpotlightJuly 2, 2026

AI Coding Agents Are a New Attack Surface - Here's How to Monitor Them

A privileged process with real credentials, real source code, and real secrets - and most security tooling is blind to it.

By Lion GrizotskyRead more
FoundersJune 16, 2026

Threats Have Evolved. Detection Hasn't. That's Why We Built Mars.

We were the attackers. We know exactly why your detections keep missing. Mars is our answer.

By Shahaf Galili, Ran Lerer & Matan CaspiRead more
SpotlightJune 15, 2026

The Patch Treadmill: Why Detection Beats Chasing Every Vulnerability

The backlog never reaches zero. Behavioral detection doesn't need it to.

By Matan CaspiRead more
SpotlightMay 18, 2026

Don't Buy a New Tool to Monitor AI. Your SOC Already Can.

Your AI tools are already speaking your SOC's language. You just have to point them at the collector you already have.

By Shahaf GaliliRead more
SpotlightApril 29, 2026

Your Threat Intelligence Has Gaps. An Agent Can Fill Them.

Your feeds aren't missing data. They're missing each other. The problem isn't coverage. It's synthesis.

By Yonah DissenRead more
SpotlightApril 23, 2026

The Cat and Mouse Game: The Best Way to Beat an LLM Is With... an LLM

Claude Mythos found bugs that survived 27 years of human review. The threat surface has permanently expanded - and defenders must scale the same way.

By Lion GrizotskyRead more
SpotlightApril 12, 2026

Your Threat Intelligence Is Useless If It Never Becomes a Detection

The pipeline between receiving a threat report and running a detection in production is broken almost everywhere.

By Ran LererRead more
SpotlightMarch 29, 2026

The Keys Were in the Logs: How AI Coding Agents Are Leaking Credentials Into Your Security Data

Your MSSP has "read-only" access to your SIEM? You may have just handed over full control of your entire organization.

By Matan CaspiRead more