Blog.

 

Series

24-11-2022
Triage Thursday

Triage Thursday Ep. 90

Read

Series

10-11-2022
Triage Thursday

Triage Thursday Ep. 89

Read

Series

27-10-2022
Triage Thursday

Triage Thursday Ep. 88

Read

Series

29-09-2022
Triage Thursday

Triage Thursday Ep. 87

Read

Series

22-09-2022
Triage Thursday

Triage Thursday Ep. 86

Read

Series

15-09-2022
Triage Thursday

Triage Thursday Ep. 85

Read

Series

18-08-2022
Triage Thursday

Triage Thursday Ep. 84

Read

Series

11-08-2022
Triage Thursday

Triage Thursday Ep. 83

Read

Series

28-07-2022
Triage Thursday

Triage Thursday Ep. 82

Read

Series

21-07-2022
Triage Thursday

Triage Thursday Ep. 81

Read

Series

14-07-2022
Triage Thursday

Triage Thursday Ep. 80

Read

Series

08-07-2022
Triage Thursday

Acquisition News and Detection Updates

Read

Series

30-06-2022
Triage Thursday

Raccoon v2 and Other Detection Updates

Read

Series

23-06-2022
Triage Thursday

BumbleBee Fix and New Extractors

Read

Series

16-06-2022
Triage Thursday

New Family Additions

Read

Series

09-06-2022
Triage Thursday

Support for Eternity Project and EnemyBot, Plus Family Updates

Read

Series

02-06-2022
Triage Thursday

A Few Weeks of Configuration Extractor and Detection Updates

Read

Series

12-05-2022
Triage Thursday

Qakbot, BumbleBee, Gh0stRAT and Redline Improvements

Read

Series

05-05-2022
Triage Thursday

SAML Release and Family Updates

Read

Series

28-04-2022
Triage Thursday

Emotet x64 and Other Updates

Read

Series

14-04-2022
Triage Thursday

UPX Unpacking and Family Updates

Read

Series

07-04-2022
Triage Thursday

Configuration Extractor Updates

Read

Series

31-03-2022
Triage Thursday

ssdeep Support, General Improvements & Family Updates

Read

Series

17-03-2022
Triage Thursday

Maldoc Handling Updates and Family Detections

Read

Series

10-03-2022
Triage Thursday

Greater Filetype Support, Family Updates, and New Coniguration Extractors

Read

Series

03-03-2022
Triage Thursday

New Family Detections and MHT File Support

Read

Series

17-02-2022
Triage Thursday

Updates for IcedID, Mercurial, Allcome and Qakbot

Read

Series

10-02-2022
Triage Thursday

New Versions and New Families

Read

Series

27-01-2022
Triage Thursday

Updates for AgentTesla, GoldDragon, BlackCat and Trickbot NWorm

Read

Series

20-01-2022
Triage Thursday

Emotet Epoch 5 and other version updates

Read

Series

13-01-2022
Triage Thursday

New Year, New Family Updates

Read

Series

23-12-2021
Triage Thursday

A Year in Review, Plus Detection Updates

Read

Series

09-12-2021
Triage Thursday

Backend Updates and Family Detection Improvements

Read

Series

02-12-2021
Triage Thursday

Advanced Submit Screen and Emotet Powershell Parsing

Read

Series

18-11-2021
Triage Thursday

Emotet Updates, and BazarLoader Emulation

Read

Series

11-11-2021
Triage Thursday

SSO Support and Family Signatures

Read

Series

04-11-2021
Triage Thursday

MacOS, TA505 and Other Family Detections

Read

Series

21-10-2021
Triage Thursday

Onemon Tweak Plus AtomSilo And STRRAT Detections

Read

Series

14-10-2021
Triage Thursday

Configuration Extractors and Family Updates

Read

Series

30-09-2021
Triage Thursday

Detection Updates for BazarLoader, ERMAC, Jupyter and Vidar

Read

Series

23-09-2021
Triage Thursday

SquirrelWaffle and Other Detection Updates

Read

Series

16-09-2021
Triage Thursday

New and Improved Family Detections

Read

Series

02-09-2021
Triage Thursday

GeoIP Mapping, Non-English VMs and Modify Analysis Duration

Read

Series

26-08-2021
Triage Thursday

Configuration Extractors and Family Updates

Read

Series

19-08-2021
Triage Thursday

Network Simulation and Family Updates

Read

Series

12-08-2021
Triage Thursday

Windows 11, TheHive Integration, and Family Updates

Read

Series

05-08-2021
Triage Thursday

Updates for Configuration Extractors and Family Detections

Read

Series

29-07-2021
Triage Thursday

General Family Updates

Read

Series

21-07-2021
Triage Thursday

Suricata Integration, New Extractors, and Family Detections

Read

Series

08-07-2021
Triage Thursday

Extractor Updates, New Families, and LZMA Support

Read

Series

01-07-2021
Triage Thursday

LimeRAT Extractor and Family Signature Additions

Read

Series

24-06-2021
Triage Thursday

Detection updates for macOS and Windows

Read

Series

17-06-2021
Triage Thursday

Onion Support and Signature Updates

Read

Series

10-06-2021
Triage Thursday

New UI, TOR support, and detection updates

Read
03-06-2021

Triage for macOS

Read

Series

27-05-2021
Triage Thursday

Android Support Updates and Family Tweaks

Read

Series

20-05-2021
Triage Thursday

More Family Updates and Additions

Read

Series

13-05-2021
Triage Thursday

Updates for Flubot, Redline, Bazar, DoubleBack and more

Read

Series

06-05-2021
Triage Thursday

Signature Updates

Read

Series

29-04-2021
Triage Thursday

General Detection Updates

Read

Series

22-04-2021
Triage Thursday

macOS Announcement and Family Updates

Read

Series

19-04-2021
Short Guides

Using Magic Links

Read

Series

08-04-2021
Triage Thursday

Phishing Analysis and Family Updates

Read

Series

25-03-2021
Triage Thursday

Preview of Phishing Analysis

Read

Series

18-03-2021
Triage Thursday

Triage Knowledge Base

Read

Series

11-03-2021
Triage Thursday

Family Detection Updates

Read

Series

04-03-2021
Triage Thursday

Custom Yara Support

Read

Series

25-02-2021
Triage Thursday

Extractor Updates and ZLoader Anti-VM

Read

Series

18-02-2021
Triage Thursday

New Warzone Extractor and Family Updates

Read

Series

11-02-2021
Triage Thursday

New Families and Detection Updates

Read

Series

04-02-2021
Triage Thursday

Updated Gozi Detection and Gootkit Extractor

Read

Series

28-01-2021
Triage Thursday

Danabot Update, Android Families, and QoL Updates

Read

Series

21-01-2021
Triage Thursday

New UI Features and Additions to Family Detections

Read

Series

14-01-2021
Triage Thursday

Dashboard Update and Family Detections

Read

Series

17-12-2020
Triage Thursday

A Year of Excel 4.0 Macros

Read

Series

10-12-2020
Triage Thursday

Search by Platform and Family Updates

Read

Series

03-12-2020
Triage Thursday

New and Updated Families

Read
02-12-2020

Triage Integration with Splunk and Cortex XSOAR

Read

Series

26-11-2020
Triage Thursday

Family Updates

Read
24-11-2020

Triage for Linux

Read

Series

12-11-2020
Triage Thursday

Configuration Extractor Improvements

Read

Series

05-11-2020
Triage Thursday

New Mitre ATT&CK Matrix UI

Read

Series

29-10-2020
Triage Thursday

New Integrations, Updated DLL Handling and New Family Classifications

Read

Series

23-10-2020
Triage Thursday

Search, Powershell Deobfuscation, and File Hash Display

Read

Series

15-10-2020
Triage Thursday

Updates for ZLoader, Netwalker, QNodeService and WSHRAT

Read

Series

08-10-2020
Triage Thursday

General Family Updates

Read

Series

01-10-2020
Triage Thursday

API Client and Family Updates

Read

Series

24-09-2020
Triage Thursday

Custom Archive Passwords, Dridex Config Extractor and Family Updates

Read

Series

17-09-2020
Triage Thursday

New Overview Section and Family Updates

Read

Series

10-09-2020
Triage Thursday

URLScan Integration and Updates for Emotet and Zloader

Read

Series

03-09-2020
Triage Thursday

CobaltStrike, Trickbot and Other Family Detections

Read

Series

27-08-2020
Triage Thursday

Smokeloader Analysis and More Family Detections

Read

Series

24-08-2020
Short Guides

Analysis Profiles

Read

Series

20-08-2020
Triage Thursday

Updated family classifications

Read

Series

13-08-2020
Triage Thursday

New extractors, expanded family support and Android analysis

Read

Series

11-08-2020
Android

Triage for Android

Read

Series

06-08-2020
Triage Updates

Triage Thursday Episode 1: Open registration and a busy week of updates

Read

Series

28-07-2020
Triage Updates

File Submission from URL

Read

Series

17-06-2020
Triage Updates

Dropped files and more goodies

Read

Series

06-05-2020
Triage Updates

SMTP/FTP Extraction

Read

Series

15-04-2020
Office

More Excel 4.0 XLM Extraction

Read

Series

09-04-2020
Office

Excel 4.0 XLM Extraction

Read

Series

20-03-2020
Short Guides

Accessing Dropped Files on Triage

Read

Series

09-03-2020
Triage Updates

Analysis Log View

Read
05-03-2020

In-Depth Metasploit Payloads Analysis

Read
03-02-2020

Analyzing Metasploit Payloads

Read

Series

24-01-2020
Short Guides

Submitting Zip Files to Triage

Read
07-01-2020

Powershell Static Analysis & Emotet results

Read

Series

18-12-2019
Understanding Ransomware

Detecting Sodin

Read
12-11-2019

Reversing Qakbot

Read

Series

30-10-2019
Understanding Ransomware

General Techniques

Read
03-07-2019

Cuckoo Sandbox Setup for People in a Hurry

Read

Series

07-05-2019
Making the Call

Why We Want More Arbiters

Read
13-03-2019

Cuckoo Sandbox Architecture

Read
20-02-2019

Release of Cuckoo-compatible onemon Windows kernel driver

Read

Series

17-12-2018
Making the Call

The Tech Behind Our PolySwarm Arbiter

Read

Series

27-11-2018
Making the Call

The First PolySwarm Arbiter

Read
12-11-2018

LNK HTA Polyglot

Read
29-10-2018

Analysis on Locky dropper mechanisms

Read
15-10-2018

IQY malspam campaign

Read
03-10-2018

Hooking VBScript execution in Cuckoo

Read
18-09-2018

Cuckoo Sandbox 2.0.6 pentest

Read