Posts on threat-hunting
5 posts on threat-hunting. Notes from public sources and my own test lab.
The Beast Inside the Box: From Static Analysis to Behavioral Hunting
Checking hashes isn't enough anymore. Sedat dives into the 'kitchen' of malware analysis, explaining why we need to move beyond signatures to understand the character of modern threats.
The Black Widow in the Box: Is a 'Sandbox' Enough for Malware Analysis?
Is a clean VirusTotal report enough? Join me as we dissect malware through static and dynamic analysis, and see why today's threats are smarter than your average sandbox.
Hunting for Treasure in the IOC Trash: The ‘Real’ Face of Threat Intel
Stop chasing static IPs and hashes. If you want to actually hurt an attacker, you need to climb the Pyramid of Pain and start targeting our TTPs.
That 3 AM Phone Call: The Side of Incident Response You Won't Find in Textbooks
Incident response isn't just about technical steps; it's about managing chaos. Here's what really happens when the SOC calls you at midnight.
Hunting the Silence: Are You Just Waiting or Actually Looking?
Everything looks green on your dashboard, but is it really? Learn why waiting for alarms is a trap and how to start hunting threats instead.