Date Author Title
2024-05-30Xavier MertensFeeding MISP with OSSEC
2024-04-29Guy BruneauLinux Trojan - Xorddos with Filename eyshcjdmzg
2024-04-11Yee Ching TokEvolution of Artificial Intelligence Systems and Ensuring Trustworthiness
2023-02-04Guy BruneauAssemblyline as a Malware Analysis Sandbox
2022-11-10Xavier MertensDo you collect "Observables" or "IOCs"?
2022-01-29Guy BruneauSIEM In this Decade, Are They Better than the Last?
2021-09-09Johannes UllrichUpdates to Our Datafeeds/API
2021-01-15Guy BruneauObfuscated DNS Queries
2021-01-02Guy BruneauProtecting Home Office and Enterprise in 2021
2020-12-05Guy BruneauIs IP 91.199.118.137 testing Access to aahwwx.52host.xyz?
2020-12-04Guy BruneauDetecting Actors Activity with Threat Intel
2020-07-28Johannes UllrichAll I want this Tuesday: More Data
2018-11-20Xavier MertensQuerying DShield from Cortex
2018-11-11Pasquale StirparoCommunity contribution: joining forces or multiply solutions?
2018-10-17Russ McReeRedHunt Linux - Adversary Emulation, Threat Hunting & Intelligence
2018-07-29Guy BruneauUsing RITA for Threat Analysis
2018-01-13Rick WannerFlaw in Intel's Active Management Technology (AMT)
2017-09-18Xavier MertensGetting some intelligence from malspam
2017-05-31Pasquale StirparoAnalysis of Competing Hypotheses, WCry and Lazarus (ACH part 2)
2017-05-28Pasquale StirparoAnalysis of Competing Hypotheses (ACH part 1)
2016-09-25Pasquale StirparoDefining Threat Intelligence Requirements
2016-07-31Pasquale StirparoSharing (intel) is caring... or not?
2016-05-02Rick WannerLean Threat Intelligence
2016-03-21Xavier MertensIP Addresses Triage
2015-08-16Guy BruneauAre you a "Hunter"?
2014-12-23John BambenekHow I learned to stop worrying and love malware DGAs....
2014-08-04Russ McReeThreats & Indicators: A Security Intelligence Lifecycle
2013-10-30Russ McReeSIR v15: Five good reasons to leave Windows XP behind
2013-07-19Stephen HallCyber Intelligence Tsunami
2013-07-18Chris MohanBlog Spam - annoying junk or a source of intelligence?
2013-04-23Russ McReeMicrosoft's Security Intelligence Report (SIRv14) released
2013-02-06Johannes UllrichIntel Network Card (82574L) Packet of Death
2012-12-20Daniel WesemannWhite House strategy on security information sharing and safeguarding
2011-02-25Johannes UllrichThunderbolt Security Speculations
2010-12-19Raul SilesIntel's new processors have a remote kill switch (Anti-Theft 3.0)
2009-06-16John BambenekIran Internet Blackout: Using Twitter for Operational Intelligence
2009-01-31John BambenekGoogle Search Engine's Malware Detection Broken
2008-11-12John BambenekThoughts on Security Intelligence (McColo Corp alleged spam/malware host knocked offline)
2008-10-30Kevin ListonMaking Intelligence Actionable: Part 2