
SOC335-CVE-2024-49138-Exploitation-Detected
Detailed incident response walkthrough analyzing CVE-2024-49138 exploitation on Windows, covering process tree analysis, IOC identification, and…

Detailed incident response walkthrough analyzing CVE-2024-49138 exploitation on Windows, covering process tree analysis, IOC identification, and…

Open source platform for cyber security analysts with many features for threat intelligence and detection engineering.

Detects GlassWorm supply chain attack payloads by scanning VS Code extensions, npm/PyPI packages, and git repos for invisible Unicode payloads,…

Technical dossier on the DPRK-linked PolinRider supply-chain attack, documenting obfuscated JS payload injection, git history manipulation, C2…

PowerShell-based incident response toolkit that collects 25+ forensic artifacts (processes, network connections, registry, browser history) and…

CVE-2023-34362-IOCs. More information on Deep Instinct's blog site.

EXIST is a web application for aggregating and analyzing cyber threat intelligence.

Incident Response Forensic Framework