InSystem WeaknessbyCarlos Minda·Aug 8A Quick Look Under the Hood: Analyzing Traffic Patterns for Well-Known Nmap ScansIt’s always good to brush up on the fundamentals. While thinking about this, I realized something: most of us are used to firing up our…
InSystem Weaknessby駱冠宇 / Bill Lo·May 22Building a SIEM-Based Incident Response Lab with Splunk, Snort, Kali Linux, and Windows ServerA hands-on cybersecurity lab showing how I configured Splunk, Snort, and Kali Linux to simulate attacks, validate detections, and build a…
InDetect FYIbyManuel Arrieta·May 8Hunting ClickFix Win + X VariantsHunting ClickFix via Win + X and Terminal‑Driven Execution
InDetect FYIbySergio Albea·Sep 14Threat Hunting with JA4/JA4S (+ Practical KQL Queries)Threat Hunters, we usually look at IP addresses, domains and URLs. They are useful IOCs, but they can also change very quickly. TLS…
Aastha Thakker·Oct 1AI Security Operations: From Alert Detection to the Full Security LifecycleAI already helps security teams explain alerts, write detection rules, and summarize incidents. The bigger shift is AI that coordinates the…
InDetect FYIbyKoifsec·Sep 27Introducing ADE-Skills — Adversarial Detection Engineering Knowledge BaseA detection rule can be wrong in two directions. Fire when nothing happened, and you’ll hear about it fast; every analyst who burns an…
Muhammad Bimatara I·2d agoFrom “PPT Compressor” to Injected Payload: Analyzing a ClickFix AttackLately, I have been hearing a concern that online tools like PDF converters or PDF compressors is not safe, they may be able to access or…
InFMI Cyber Security Consulting ServicesbyDigit Oktavianto·2d agoHunting on the Wire : A Practical Guide to Network Threat Hunting — Part 1Network Threat Hunting, Part 1: You Can Hide Processes, But You Can’t Hide Packets
Muhammad Fahad·1h agoThinking Like a SOC Analyst: What I Learned Completing KC7 Security Analyst ISix investigations, one skill set: turning raw logs into answers.
Youssef Mahrous·2h agoHackTheBox Sherlocks Write-up LogjammerScenario :You have been presented with the opportunity to work as a junior DFIR consultant for a big consultancy. However, they have…
Tara Kumawat·7h agoWhen “Authentication Passed” Isn’t Safe: Investigating a Device Code Phishing Attack in Microsoft…How an attacker took over a mailbox without stealing a password, what the logs showed, and how we shut the door.
Sudeepth P·14h agoTryHackMe: Defensive Security Intro — WalkthroughIn the previous room, we took the offensive route — playing the attacker, brute-forcing directories, and altering bank balances.
Sérgio Corrêa·18h agoBloqueio Proativo no Wazuh — De Alertas Web a Listas de Reputação e Active ResponseOlá!