ShukruN

Results 3 issues of ShukruN

So I've been examining this hunt/detection and I have attempted to recreate the conditions for this hunt and while doing so I have encountered a possible incorrect logic presented in...

playbook proposed

Hello, just as the title says, i am using netscan on a memory dump i did, and all of the established/close_wait and some of the closed connections are returning PID...

Windows

Do you plan on supporting schema 4.2 any time soon?