From Munitions to Malware: Joseph Harrison on Threat Detection & Digital Forensics
ID: 43d1a974-a34f-585e-9b84-51f79f6143ba
STIX ID: report--43d1a974-a34f-585e-9b84-51f79f6143ba
Feed Name: Hunt.io Blog
Threat Score
This interview with a Threat Detection Operations Lead describes SOC workflows, threat hunting practices, and an investigative case where a ClickFix phishing page led to a blocked PowerShell download cradle and indicators tied to a RAT/StealC campaign; the analyst details using EDR telemetry, network analysis, Hunt.io enrichment, and subsequent mitigation actions while emphasizing detection tuning, logging tradeoffs, and automation vs. human review.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
