Sharing our knowledge
Knowledge center
How data science can boost your detection engineering maintenance and keep you from herding sheep
[dsm_breadcrumbs show_home_icon="off" separator_icon="K||divi||400" admin_label="Supreme Breadcrumbs" _builder_version="4.18.0" _module_preset="default" items_font="||||||||" items_text_color="rgba(255,255,255,0.6)" custom_css_main_element="color:...
Microsoft Defender for Endpoint Internal 0x06 – Custom Collection
[dsm_breadcrumbs show_home_icon="off" separator_icon="K||divi||400" admin_label="Supreme Breadcrumbs" _builder_version="4.18.0" _module_preset="default" items_font="||||||||" items_text_color="rgba(255,255,255,0.6)" custom_css_main_element="color:...

Automating enumeration of missing reply URLs in Azure multitenant apps

FalconFriday — Detecting MMC abuse using GrimResource with MDE— 0xFF24

Arbitrary 1-click Azure tenant takeover via MS application

SOAPHound — tool to collect Active Directory data via ADWS

FalconHound, attack path management for blue teams

Microsoft Defender for Endpoint Internals 0x05 — Telemetry for sensitive actions

Leg ups: helping hand or red team failure?

FalconFriday — Automating acquisition for incident response — 0xFF23

BloodHound — Calculating AD metrics 0x02
No results found.
FalconForce realizes ambitions by working closely with its customers in a methodical manner, improving their security in the digital domain.
Energieweg 3
3542 DZ Utrecht
The Netherlands
FalconForce B.V.
[email protected]
(+31) 85 044 93 34
KVK 76682307
BTW NL860745314B01

