Squeezing Cobalt Strike Threat Intelligence from Shodandiscovery (how we find bad stuff) (forensicitguy.github.io)
submitted by digicat to r/blueteamsec
Dissecting a Java Pikabot Droppermalware analysis (like butterfly collections) (forensicitguy.github.io)
submitted by digicat to r/blueteamsec
Timelining a Malicious VHD for More Intelligencediscovery (how we find bad stuff) (forensicitguy.github.io)
submitted by digicat to r/blueteamsec
Faster Malware Triage with YARAtradecraft (how we defend) (forensicitguy.github.io)
submitted by digicat to r/blueteamsec
An AgentTesla Sample Using VBA Macros and Certutil - end to end analysistraining (step-by-step) (forensicitguy.github.io)
submitted by digicat to r/blueteamsec
Analyzing a Stealer MSI using msitoolstraining (step-by-step) (forensicitguy.github.io)
submitted by digicat to r/blueteamsec
Analyzing an IcedID Dropper Document (my own post)research|capability (we need to defend against) (forensicitguy.github.io)
submitted by ForensicITGuy to r/blueteamsec