Zeljka Zorz · @zeljkazorz
69 followers · 21 posts · Server infosec.exchange

Google Cloud’s intelligence research and applications team released a collection of 165 YARA rules to help defenders flag Cobalt Strike components deployed by attackers - helpnetsecurity.com/2022/11/21 -

#cobaltstrike #yara #DetectionRules #redteam #blueteam #cybersecurity #infosec

Last updated 3 years ago

Marko Jahnke · @markojahnke
66 followers · 227 posts · Server bonn.social

In the early 2000s, a student and myself developed an /#IDXP compliant security event message pipelining framework for collecting and consolidating messages from network , and products.

In the messages stream, we were able to match multi-stage in near real-time (in-memory), before everything was stored in central database. Structural graph-based was developed later by some colleagues.

We called it .

#cs #IDMEF #ids #EDR #correlation #DetectionRules #anomalydetection #MetaIDS

Last updated 4 years ago