Webcast: Durable vs. Ephemeral Threat Intel
ID: acaf8b00-32f0-5432-86d1-df481609d50f
STIX ID: report--acaf8b00-32f0-5432-86d1-df481609d50f
Feed Name: Black Hills Infosec Blog
This is a description of a Black Hills Information Security webcast in which the presenter argues against traditional, indicator-focused threat intelligence and advocates for "durable" threat intelligence that emphasizes persistent attack techniques and behaviors. The talk covers detection approaches (application allow-listing abuse, connection profiling, PowerShell encoding), emulation/iteration methods, and showcases open-source tools and frameworks such as DeTT&CT, Sigma, RITA, MITRE Scorecard, PlumHound, and honeypots to improve detection and threat emulation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
