DEV Community

# blueteam

Defensive security strategies, threat detection, and incident response.

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Construyendo un Home Lab Blue Team para PYMEs con pfSense y Snort: mi TFG para ASIR

Construyendo un Home Lab Blue Team para PYMEs con pfSense y Snort: mi TFG para ASIR

Comments
3 min read
Observable Adversarial Behavior, Not Portable Adversarial Procedure

Observable Adversarial Behavior, Not Portable Adversarial Procedure

5
Comments
6 min read
SHENRON v0.3.3: From Telemetry Generator to Blue-Team Reasoning Instrument

SHENRON v0.3.3: From Telemetry Generator to Blue-Team Reasoning Instrument

3
Comments 1
5 min read
Why SOC analysts get inconsistent results from ChatGPT (and how structured workflows fix it)

Why SOC analysts get inconsistent results from ChatGPT (and how structured workflows fix it)

Comments
2 min read
How I taught a log scanner to tell brute force from credential spray

How I taught a log scanner to tell brute force from credential spray

Comments
4 min read
After event viewer crashed on a 400mb evtx, i wrote my own log triage cli

After event viewer crashed on a 400mb evtx, i wrote my own log triage cli

Comments
4 min read
Sysmon Logs Deep-Dive - From Raw Data to Threat Evidence

Sysmon Logs Deep-Dive - From Raw Data to Threat Evidence

3
Comments
6 min read
I Built a Honeypot That Profiles Attackers and Maps Their Behavior to MITRE ATT&CK

I Built a Honeypot That Profiles Attackers and Maps Their Behavior to MITRE ATT&CK

1
Comments
4 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.