Skip to content

PossibleThreat Articles

Articles for the experts…

  • Security
    • Sophos
    • MalwareBytes
    • TrendMicro
    • Microsoft
    • Fortinet
  • Sciences
  • Independent
    • Krebs
    • Wired
    • Securiteam
    • ComputerWorld

incident response tools

Security Sophos 

Remote Desktop Protocol: The Series

March 20, 2024 0 Comments active adversary, featured, Incident Response, incident response tools, mdr, RDP, security operations, sophos x-ops, threat research

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:18:21 +0000

What is RDP, why is it a very nearly ubiquitous finding in incident response, and how can investigators run it to ground it when it goes wrong? An Active Adversary Special Report

Read more
Security Sophos 

Remote Desktop Protocol: Exposed RDP (is dangerous)

March 20, 2024 0 Comments Incident Response, incident response tools, mdr, RDP, security operations, sophos x-ops

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:16:34 +0000

Is it really that risky to expose an RDP port to the internet? What if you change the default port? What if it’s just for a little while? The data answers, loud and clear

Read more
Security Sophos 

Remote Desktop Protocol: Queries for Investigation

March 20, 2024 0 Comments Incident Response, incident response tools, mdr, RDP, security operations, sophos x-ops

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:15:12 +0000

How can defenders begin to make sense of RDP issues on their networks? We present three powerful tools for investigators’ toolkits

Read more
Security Sophos 

Remote Desktop Protocol: How to Use Time Zone Bias

March 20, 2024 0 Comments Incident Response, incident response tools, mdr, RDP, security operations, sophos x-ops

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:13:08 +0000

Where in the world is your attacker? Presenting a less-known but useful event to look for in your logs

Read more
Security Sophos 

Remote Desktop Protocol: Executing the 4624_4625 Login Query

March 20, 2024 0 Comments Incident Response, incident response tools, mdr, RDP, security operations, sophos x-ops

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:11:40 +0000

Keeping an eye on who’s trying to get onto your network – whether or not they’re successful – can pay off on multiple fronts

Read more
Security Sophos 

Remote Desktop Protocol: Executing the External RDP Query

March 20, 2024 0 Comments Incident Response, incident response tools, mdr, query, RDP, security operations, sophos x-ops

Credit to Author: Angela Gunn| Date: Wed, 20 Mar 2024 16:09:06 +0000

On the hunt for successful RDP connections that have entered your network from outside? A step-by-step guide (and a query to get you started)

Read more
Security Sophos 

An open-source ML toolkit for automatically generating YARA rules

August 25, 2022 0 Comments ai research, free tools, incident response tools, open-source, threat hunting tools, yara, yaraml

Credit to Author: gallagherseanm| Date: Thu, 25 Aug 2022 11:00:35 +0000

The SophosAI Artificial Intelligence team has developed a machine-learning based tool that generates YARA rules for detecting specific types of threats

Read more

Recent Posts

  • Scammers Unleash Flood of Slick Online Gaming Sites
  • Phishers Target Aviation Execs to Scam Customers
  • Microsoft Fix Targets Attacks on SharePoint Zero-Day
  • Poor Passwords Tattle on AI Hiring Bot Maker Paradox.ai
  • DOGE Denizen Marko Elez Leaked API Key for xAI

Recent Comments

    Archives

    • July 2025
    • June 2025
    • May 2025
    • April 2025
    • March 2025
    • February 2025
    • January 2025
    • December 2024
    • November 2024
    • October 2024
    • September 2024
    • August 2024
    • July 2024
    • June 2024
    • May 2024
    • April 2024
    • March 2024
    • February 2024
    • January 2024
    • December 2023
    • November 2023
    • October 2023
    • September 2023
    • August 2023
    • July 2023
    • June 2023
    • May 2023
    • April 2023
    • March 2023
    • February 2023
    • January 2023
    • December 2022
    • November 2022
    • October 2022
    • September 2022
    • August 2022
    • July 2022
    • June 2022
    • May 2022
    • April 2022
    • March 2022
    • February 2022
    • March 2020
    • February 2020
    • January 2020
    • December 2019
    • November 2019
    • October 2019
    • September 2019
    • August 2019
    • July 2019

    Categories

    • BitCoin
    • Blokt
    • ComputerWorld
    • Currency
    • Digital
    • Fortinet
    • Independent
    • Krebs
    • MalwareBytes
    • Microsoft
    • News
    • QuickHeal
    • Science
    • Securiteam
    • Security
    • Sophos
    • Technology
    • TrendMicro
    • Wired
    Copyright © 2025 PossibleThreat Articles. All rights reserved.
    Theme: ColorMag by ThemeGrill. Powered by WordPress.