Forem

# soc

Discussions related to Security Operations Centers, including tools, processes, and analyst life.

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
How to Triage a Ransomware Alert Without Losing the First 15 Minutes
Cover image for How to Triage a Ransomware Alert Without Losing the First 15 Minutes

How to Triage a Ransomware Alert Without Losing the First 15 Minutes

Comments
5 min read
How to Triage a Phishing Alert Faster — Without Rebuilding the Process Every Time
Cover image for How to Triage a Phishing Alert Faster — Without Rebuilding the Process Every Time

How to Triage a Phishing Alert Faster — Without Rebuilding the Process Every Time

Comments
5 min read
Ursnif Malware — Reconstructing a 6-Stage Infection Chain from a PCAP
Cover image for Ursnif Malware — Reconstructing a 6-Stage Infection Chain from a PCAP

Ursnif Malware — Reconstructing a 6-Stage Infection Chain from a PCAP

Comments
5 min read
Letsdefend SOC335 - CVE-2024-49138 Exploitation Detected

Letsdefend SOC335 - CVE-2024-49138 Exploitation Detected

Comments
3 min read
LetsDefend SOC176 - RDP Brute Force Detected

LetsDefend SOC176 - RDP Brute Force Detected

Comments
3 min read
Identity Is the New SOC: Why Security Monitoring Is Shifting to IAM

Identity Is the New SOC: Why Security Monitoring Is Shifting to IAM

Comments
3 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.