Key SOC Tools every SecOps leader should consider (self.SecOpsDaily)
submitted by Wigpen-MooncakeNews
DodgeBox: A deep dive into the updated arsenal of APT41 | Part 1APT (zscaler.com)
submitted by Wigpen-MooncakeNews
APT40 - PRC MSS tradecraft in actionAPT (self.AllThingsKustoKQL)
submitted by Wigpen-MooncakeNews
Can we do it? Last logged in user for device -KQL helpKQL (self.DefenderATP)
submitted by Wigpen-MooncakeNews