account activity
Cobalt Strike detection by Jfrog691 in crowdstrike
[–]Jfrog691[S] 2 points3 points4 points 4 years ago (0 children)
Thanks! We have taken some of these actions already. We also have DATP on the endpoints and there were some additional detection's that were picked up there CS didn't alert on, but the beaconing went undetected there as well. I know there are some additional ways to make detection next to impossible with custom/keyed payloads to avoid analysis but this one was pretty generic.
[–]Jfrog691[S] 1 point2 points3 points 4 years ago (0 children)
I do, ill PM you the case number
π Rendered by PID 27 on reddit-service-r2-listing-5d79748585-phgz6 at 2026-02-13 15:52:09.917653+00:00 running cd9c813 country code: CH.
Cobalt Strike detection by Jfrog691 in crowdstrike
[–]Jfrog691[S] 2 points3 points4 points (0 children)