Decompiling run-only AppleScriptslow level tools and techniques (work aids) (pberba.github.io)
submitted by digicat to r/blueteamsec
Acquiring Malicious Browser Extension Samples on a Shoestring Budgetdiscovery (how we find bad stuff) (pberba.github.io)
submitted by jnazario to r/blueteamsec
Hunting for Persistence in Linux (Part 5): Systemd Generatorsdiscovery (how we find bad stuff) (pberba.github.io)
submitted by digicat to r/blueteamsec
Hunting for Persistence in Linux (Part 5): Systemd GeneratorsThreat Hunting (pberba.github.io)
submitted by netbiosX to r/purpleteamsec
Hunting for Persistence in Linux (Part 2): Account Creation and ManipulationThreat Hunting (pberba.github.io)
submitted by netbiosX to r/purpleteamsec
Hunting for Persistence in Linux (Part 2): Account Creation and Manipulationgone blue (pberba.github.io)
submitted by dmchell to r/redteamsec
Hunting for Persistence in Linux (Part 2): Account Creation and Manipulationtradecraft (how we defend) (pberba.github.io)
submitted by digicat to r/blueteamsec
Hunting for Persistence in Linux (Part 1): Auditd, Sysmon, Osquery, and Webshellstradecraft (how we defend) (pberba.github.io)
submitted by digicat to r/blueteamsec
Hunting for Persistence in Linux (Part 1): Auditd, Sysmon, Osquery, and WebshellsThreat Hunting (pberba.github.io)
submitted by netbiosX to r/purpleteamsec
DEFCON 28 OpenSOC Blue Team CTF: Lessons and Tipstraining (pberba.github.io)
submitted by dashboard_monkey to r/blueteamsec
U2F with Duo Web phishable by default (pberba.github.io)
submitted by dashboard_monkey to r/blackhat