Detection 12
- Weaponize Your Word – Malicious Template Injection
- Active Cyber Defence – Taking back control
- Hunting for ‘Snake’
- Implementation and Dynamic Generation for Tasks in Apache Airflow
- PowerShell Jobs
- Running Once, Running Twice, Pwned! Windows Registry Run Keys
- Securing against new offensive techniques abusing active directory certificate service
- Detecting known DLL hijacking and named pipe token impersonation attacks with Sysmon
- shad0w
- A Defender’s Guide For Rootkit Detection: Episode 1 – Kernel Drivers
- Bypassing Antivirus with Golang – Gopher it!
- Enhanced logging to detect common attacks on Active Directory– Part 1