How to Reduce False Positives with Shared Context
False positives are rarely caused by too many alerts, but by missing context. Let’s say a spike in outbound traffic shows up in the firewall logs. Around the same time, ...
Read MoreInsights, updates, and technical deep dives from our team
False positives are rarely caused by too many alerts, but by missing context. Let’s say a spike in outbound traffic shows up in the firewall logs. Around the same time, ...
Read More
It seems as if monitoring DNS traffic has become pretty popular lately. Our security team just utilized DNS traffic
Read MoreThis morning our malware incident response system triggered an event for suspected DNS “Command and Control” activities. Our security
Read More