Homepage
Open in app
Sign in
Get started
Blu Raven
Posts about threat hunting and detection
Follow
Advanced KQL for Threat Hunting: Window Functions — Part 2
Advanced KQL for Threat Hunting: Window Functions — Part 2
Using sliding window functions in KQL for better detection.
Mehmet Ergene
Mar 4, 2023
Advanced KQL for Threat Hunting: Window Functions — Part 1
Advanced KQL for Threat Hunting: Window Functions — Part 1
Window functions can take your threat hunting and DFIR skills to a next level!
Mehmet Ergene
Jan 7, 2023
An Alternative Way of Using MITRE ATT&CK® for Threat Hunting and Detection
An Alternative Way of Using MITRE ATT&CK® for Threat Hunting and Detection
Using MITRE ATT&CK framework for a better threat detection coverage
Mehmet Ergene
Aug 26, 2021
Threat Hunting with Data Science: Registry Run Keys
Threat Hunting with Data Science: Registry Run Keys
Threat hunting and detection of Registry Run Keys on a large scale by using basic Data Science methods.
Mehmet Ergene
Mar 25, 2021
Prevention, Detection, and Hunting Strategies for Ransomware
Prevention, Detection, and Hunting Strategies for Ransomware
The recent spread of Ryuk ransomware showed that even big companies had critical issues with their defenses. What surprised me is that…
Mehmet Ergene
Nov 8, 2020
Continuous Threat Hunting
Continuous Threat Hunting
There is something not clear enough about threat hunting process…
Mehmet Ergene
Sep 21, 2020
Threat Hunting and Detection with Web Proxy Logs
Threat Hunting and Detection with Web Proxy Logs
As I mentioned in my "detecting and responding to ransomware attacks" post, I created a hunting and detection guide using proxy logs…
Mehmet Ergene
Aug 12, 2020
About Blu Raven
Latest Stories
Archive
About Medium
Terms
Privacy
Teams