How to Reduce False Positives with Shared Context
False positives are rarely caused by too many alerts, but by missing context. Let’s say a spike in outbound traffic shows up in the firewall logs. Around the same time, ...
Read MoreInsights, updates, and technical deep dives from our team
False positives are rarely caused by too many alerts, but by missing context. Let’s say a spike in outbound traffic shows up in the firewall logs. Around the same time, ...
Read More
Lateral movement is rarely loud. Once an attacker gains an initial foothold, the next phase often blends into normal
Read More
Lateral movement refers to the techniques attackers use to move through a network after gaining initial access. Instead of
Read More
If you are familiar with the MITRE ATT&CK framework, then you know most attackers will follow a general sequence
Read More