What Is Krebs on Security Used For: Features, Reviews & Alternatives
In-depth security news and investigation.
Editorially updated Oct 25, 2025
Krebs on Security
krebsonsecurity.com
The overview
What Krebs on Security is for
1Core Capabilities
- Investigative coverage of breaches, cybercrime markets, botnets, carding, and identity abuse schemes
- Reported links between attackers, infrastructure, victims, and monetization methods
- Follow-up stories that revisit earlier incidents as new facts, arrests, or campaign shifts surface
- Searchable archive for recurring actors, fraud patterns, and prior disclosures that still matter during triage
Who it helps
Useful ways to use Krebs on Security
A practical path
Search by incident, actor, or victim type
Start with the breach name, malware family, criminal forum, or company involved so you land on reporting tied to the exact threat or abuse pattern you are evaluating.
External signals
Reviews & reputation
Aggregated review score
Krebs on Security can deliver reliable outcomes for news and analysis consumption, especially when rollout begins with a pilot focused on depth.
Quick answers
Frequently asked questions
1Is Krebs on Security a threat intelligence platform?⌄
No. It is primarily a reporting and analysis publication. It can support intelligence work, but it does not replace telemetry, IOC feeds, case management, or detection content.
2Will every article include technical indicators or hands-on artifacts?⌄
Not necessarily. Some pieces include concrete infrastructure or attack details, while others focus more on sourcing, attribution context, or the criminal business model behind an incident.
3Who gets the most value from it?⌄
Security practitioners, fraud teams, and security-conscious operators tend to get the most from it, especially when they need well-reported context on active threats and recurring abuse patterns.
4Is it useful for vendor evaluation?⌄
Yes, as a reality check. It is more useful for understanding the shape of the problem than for comparing feature matrices or running a formal product bake-off.
5Does it work better as a one-off read or a repeat reference source?⌄
Usually as a repeat reference source. The value compounds when you return to the archive and connect new incidents with older reporting on the same actors, schemes, or disclosure patterns.
Keep exploring
