• Home
  • Active Directory Attack
  • Network Attack
  • SIEM
  • TOOLS
  • IOC
  • Mitre Att&ck
  • E-Mail Attack
Search
Security Investigation Be the first to investigate
  • Home
  • Active Directory Attack
    • OS Credential Dumping- LSASS Memory vs Windows Logs

      Credential Dumping using Windows Network Providers – How to Respond

      The Flow of Event Telemetry Blocking – Detection & Response

      UEFI Persistence via WPBBIN – Detection & Response

      Microsoft Notified Blueteam to Monitor Sqlps.exe and Powershell

  • Network Attack
    • What is Port Forwarding and the Security Risks?

      CVE-2021-4034 - Polkit Vulnerability Exploit Detection

      CVE-2021-4034 – Polkit Vulnerability Exploit Detection

      DNSSEC – Domain Name System Security Extensions Explained

      Detect Most Common Malicious Actions in the Linux Environment

      Detect Most Common Malicious Actions in the Linux Environment

      How DNS Tunneling works – Detection & Response

  • SIEM
    • What is Surface web, Deep web and Dark web

      OVERVIEW OF MODERN AND FUTURE SOC

      Anatomy Of The Ransomware Cybercrime Economy

      Anatomy Of An Advanced Persistent Threat Group

      Out-of-Band Application Security Testing – Detection and Response

  • TOOLS
    • How to Detect Malware Hijacking Digital signatures

      Densityscout – Entropy Analyzer for Threat Hunting and Incident Response

      Malicious JQuery & JavaScript – Threat Detection & Incident Response

      Free Ransomware Decryption tool -No More Ransom

      How to Remove Database Malware from Your Website

  • IOC
    • Phishing Scam Alert: Fraudulent Emails Requesting to Clear Email Storage Space…

      Vidar Infostealer Malware Returns with new TTPS – Detection & Response

      New WhiskerSpy Backdoor via Watering Hole Attack -Detection & Response

      RedLine Stealer returns with New TTPS – Detection & Response

      Understanding Microsoft Defender Threat Intelligence (Defender TI)

  • Mitre Att&ck
    • Masquerade Attack Part 2 – Suspicious Services and File Names

      Masquerade Attack – Everything You Need To Know in 2022

      MITRE D3FEND Knowledge Guides to Design Better Cyber Defenses

      Mapping MITRE ATT&CK with Window Event Log IDs

      Advance Mitre Threat Mapping – Attack Navigator & TRAM Tools

  • E-Mail Attack
    • Emotet Malware with Microsoft OneNote- How to Block emails based on…

      How DMARC is used to reduce spoofed emails ?

      Hackers Use New Static Expressway Phishing Technique on Lucidchart

      Weird Trick to Block Password-Protected Files to Combat Ransomware

      Phishing with Reverse Tunnels and URL Shorteners – Detection & Response

Home Authors Posts by Sindhuja

Sindhuja

6 POSTS COMMENTS
http://www.socinvestigation.com
6 Ways to Spot a Phishing Email Before You Fall Victim
Editors Pick

6 Ways to Spot a Phishing Email Before You Fall Victim

Sindhuja -
July 29, 2022
0
Detections of Malware Execution from Unusual Directories
Active Directory Attack

Detections of Malware Execution from Unusual Directories

Sindhuja -
October 13, 2021
0
Windows Service Creation and Malware Detection Methods
Active Directory Attack

Windows Service Creation and Malware Detection Methods

Sindhuja -
October 5, 2021
0
Important Windows processes for Threat Hunting
Active Directory Attack

Important Windows processes for Threat Hunting

Sindhuja -
September 23, 2021
0
Google Rapid Response Tool for Remote Live Forensics
TOOLS

Google Rapid Response Tool for Remote Live Forensics

Sindhuja -
September 10, 2021
0
What is Threat Intelligence – Importance , CTI Lifecycle & Pyramid of Pain
SIEM

What is Threat Intelligence – Importance , CTI Lifecycle & Pyramid of Pain

Sindhuja -
August 16, 2021
0

Newsletter

Loading
  • About Us
  • Contact Us
  • Privacy Policy
© Newspaper WordPress Theme by TagDiv