Все публикации

CDC Data Geosurveillance with LogScale

Fuzzing LogScale FDR 'CommandLine' key results for malicious behavior

Reveal(X) Humio Layer 7 Integration

Reveal(X) Humio Application for Unmanaged Systems (No Falcon Sensor)

Reveal(x) queues RTR Windows Firewall update to block unmanaged IoT Device.

Surgical Strike: Process Killing with Reveal(X) CrowdStrike ThreatGraph and Real-Time Response.

Reveal(x) and CrowdStrike Custom IOC Integration

Using Reveal(x) To assert Kerberos Ticket Passing

Detecting WPAD and SMB Relay

Detecting RCE with Crackmapexec with Reveal(X)

Reveal(x) and MISP Integration

Using Acute Threat Intelligence (ATI) with Reveal(x) and AlienVault

Direct PCAP Access from Splunk Recordstore in Reveal(x)

Rubeus Roasting - Protocol Threading with Reveal(X)

Detecting Let's Encrypt Issued certificates that use your Company's namespace

Checking IPs returned by DNS Queries with 'Covid and Corona' against AlienvVault OTX

Checking High-Fidelity Observables against VirusTotal using API

ExtraHop Reveal(x) Checking CPN's using ManageEngine API

Beyond IOCs: Threat Hunting for TTPs with Reveal(x)

Beyond IOCs: Hunting TTPs with Reveal(x)

Hunting TTPs with Reveal(X)

Phish Phinding with HTTP Referers

Reducing your SIEM burden by setting context in flight

ExtraHop Segment Auditing