logo

Detect FYI

ID: 3e9addeb-6d59-5d0a-8893-5aa91c8a0809

STIX ID: identity--3e9addeb-6d59-5d0a-8893-5aa91c8a0809

Feed Type: rss

Earliest post: 2025-06-02

Latest post: 2026-05-29

The Detect.fyi Blog provides practical, community-driven insights, tutorials, and tools on detection engineering, threat hunting, and actionable security techniques to help defenders improve threat visibility and response.

01/01/2020
05/31/2026
Title Date Published Describes IncidentAuthorVisible
The AI-Embedded SOC: An Operating Model for the Asymmetry Era2026-05-29TrueOmar Tarek ZayedTrue
Hunt Before They Hide -From Device Codes to Fake IT Support Detecting Active Microsoft 365 Identity…2026-05-26TrueRohitashokgowdTrue
Detection Logic Bugs, Developing Context to Bypass MiniPlasma Rules2026-05-23TrueNikolas BielskiTrue
The Hidden Security Risk in Microsoft Teams: Detecting AI Note-Taking Bots with KQL2026-05-14TrueBi Yue XuTrue
Unmanaged PowerShell Execution: Hunting Beyond powershell.exe2026-05-08TrueNesrine CherrabiTrue
Hunting ClickFix Win + X Variants2026-05-08TrueManuel ArrietaTrue
Analyzing GLOBAL GROUP (BlackLock) Artifacts2026-04-24TrueSIMKRATrue
Threats based on Clipboards actions (+ KQL Query)2026-03-30TrueSergio AlbeaTrue
A Detection Researcher Mindset — DCSYNC T1003.0062026-03-27TrueScott PlastineTrue
Ghost in LSASS: Detecting KslKatz Credential Dumping Framework2026-03-27TrueOmar Tarek ZayedTrue
Detecting RegPwn by Behavior, Not Binary2026-03-23TrueOmar Tarek ZayedTrue
The Invisible Kill Chain: Detecting Non-Human Identity Attacks Across Telemetry Boundaries2026-03-01TrueKoifsecTrue
Shai Hulud 2.0 Campaign2026-01-12TrueSIMKRATrue
Detection of Kerberos Golden Ticket Attacks via Velociraptor2026-01-11TruedfirloadingTrue
Hunting Fileless Malware in the Windows Registry2025-06-24TrueManuel ArrietaTrue

1–15 of 15