Discussion about this post

User's avatar
Ron Cahlon's avatar

Love this write-up! It's incredibly helpful to see the actual queries you'd run at each step of the hunt and the reasoning behind them.

I'm really struck by how complex these behavioral threat hunts can be—and how much expertise is required across different tools and organizational contexts. Thanks for sharing.

Expand full comment

No posts