Data & research
Expel Quarterly Threat Report, Q2 2025: Q2 by the numbers

Part I of our Quarterly Threat Report summarizes key findings and stats from Q2 of 2025. Learn what to focus on right now.

Product | 2 min read
Level up your cloud defense: Expel’s Wiz Defend integration is now live

Expel's partnership with Wiz Defend gives mutual customers richer alert context, faster response times, and streamlined cloud security.

Product | 3 min read
Unlocking more from your CrowdStrike investment

Expel cuts through the flood of CrowdStrike alerts by 91% on average to maximize your security tools with strong API connections.

Product | 5 min read
Explore Expel’s auto remediations: Reset credentials

In this series, we explore Expel's auto remediations so you understand how they work. Let's explore reset credentials.

Current events | 2 min read
Black Hat 2025: What we’re still thinking about

Black Hat 2025 has come to an end, but here's what we're still thinking about and expect to continue seeing in headlines and strategies.

Current events | 4 min read
Patch Tuesday: August 2025 (Expel’s version)

The August 2025 edition of Patch Tuesday is live, and this month we're highlighting targeted SharePoint vulnerabilities.

Cloud security | 2 min read
Cloud Decoded (part 3): Hey CISOs, stop guessing when it comes to cloud security

Part three of our Cloud Decoded blog series focuses on what you need to know about cloud detection and response (CDR).

MDR | 7 min read
How to sell Expel MDR to your CFO: the complete guide

Selling MDR to a CFO is challenging. Use numbers that matter, and be prepared for questions. This guide can help you prepare your proposal.

Product | 4 min read
When your keys go missing: getting real about identity threats

Expel updated our threat alerts to be clearer, so you understand precisely what's happening with credential theft and account compromise.

Product | 5 min read
That’s not MDR, it’s a scapegoat

Discover why outsourcing alert triage falls short and how a human-AI collaborative approach can improve cybersecurity outcomes.

Threat intel | 2 min read
An important update (and apology) on our PoisonSeed blog

An important update and apology on the Expel blog, for a blog we published on PoisonSeed on July 17, 2025.

Product | 5 min read
Explore Expel’s auto remediations: Disable access key

In this series, we explore Expel's auto remediations so you understand how they work. Let's explore disable access key.

Data & research | 5 min read
Expel Quarterly Threat Report, Q2 2025: Threat intel recap

Here's a refresher on the threat intel we shared throughout the second quarter of 2025. Catch up on what you missed.