This paper presents a new approach to computer network defense that tackles the threat component of risk by analyzing adversary campaigns and intrusion kill chains. It introduces an intelligence-driven model that enables defenders to establish a state of information superiority, decreasing the adversary's likelihood of success with each subsequent intrusion attempt. The approach involves analyzing indicators, computed and behavioral, to identify patterns that link individual intrusions into broader campaigns, and leveraging this intelligence to inform network defense investment and resource prioritization.
A comprehensive Windows command-line reference guide for security professionals, system administrators, and incident responders.
A comprehensive resource for threat hunting in Active Directory environments, covering tracking command-line/PowerShell activity, Kerberoasting detection, auditing attacker activity, and monitoring enterprise command-line activity.
A comprehensive guide to hardening OpenLDAP on Linux using AppArmor and systemd, providing a defense in depth approach to securing LDAP deployments.
A behavior-based malware detection system for Android platforms that uses crowdsourcing to detect anomalies and malware in applications.
BPF+ is a generalized packet filter framework that achieves both high-level expressiveness and good performance for network monitoring and intrusion detection applications.
A comprehensive cheat sheet for using JtR (John the Ripper), a password cracking tool.
A structured approach to managing and responding to suspected security events or incidents.
A pocket reference guide providing various options for navigating and pivoting through different environments and situations.
An AI-powered career platform that automates the creation of cybersecurity job application materials and provides company-specific insights for job seekers.
Fabric Platform is a cybersecurity reporting solution that automates and standardizes report generation, offering a private-cloud platform, open-source tools, and community-supported templates.
Stay ahead in cybersecurity. Get the week's top cybersecurity news and insights in 8 minutes or less.
Wiz Cloud Security Platform is a cloud-native security platform that enables security, dev, and devops to work together in a self-service model, detecting and preventing cloud security threats in real-time.
A cybersecurity platform that offers vulnerability scanning, Windows Defender and 3rd party AV management, and MFA compliance reporting, among other features.
Adversa AI is a cybersecurity company that provides solutions for securing and hardening machine learning, artificial intelligence, and large language models against adversarial attacks, privacy issues, and safety incidents across various industries.