Homepage
Open in app
Sign in
Get started
Tagged in
Falconfriday
FalconForce
A team of highly specialized security professionals
More information
Followers
689
Elsewhere
More, on Medium
Falconfriday
Gijs Hollestelle
in
FalconForce
Jun 28
FalconFriday — Detecting MMC abuse using “GrimResource” with MDE — 0xFF24
Read more…
4
Jos van der Peet
in
FalconForce
Dec 16, 2022
FalconFriday — Using public intelligence feeds to improve detections — 0xFF22
Read more…
Gijs Hollestelle
in
FalconForce
Nov 11, 2022
FalconFriday — Detecting Active Directory Data Collection — 0xFF21
Active Directory data collection
Read more…
55
Henri Hambartsumyan
in
FalconForce
Oct 14, 2022
FalconFriday — Detecting ADCS web services abuse — 0xFF20
Read more…
12
Olaf Hartong
in
FalconForce
Sep 16, 2022
FalconFriday — Detecting LSASS dumping with debug privileges — 0xFF1F
Credential dumping from Local…
Read more…
32
Henri Hambartsumyan
in
FalconForce
Jun 17, 2022
FalconFriday — Detecting UnPACing and shadowed credentials— 0xFF1E
Read more…
8
1 response
Gijs Hollestelle
in
FalconForce
May 13, 2022
FalconFriday — Detecting malicious modifications to Active Directory — 0xFF1D
Read more…
3
Gijs Hollestelle
in
FalconForce
Feb 11, 2022
FalconFriday — Detecting realistic AWS cloud-attacks using Azure Sentinel — 0xFF1C
Read more…
11
Olaf Hartong
in
FalconForce
Jan 14, 2022
FalconFriday — Suspicious named pipe events — 0xFF1B
Read more…
20
Jos van der Peet
in
FalconForce
Dec 17, 2021
FalconFriday —Monitoring for public shares — 0xFF1A
Read more…
1
1 response