• Skip to primary navigation
  • Skip to content
  • Skip to footer
Security Content Security Content
  • Detections
  • Analytic Stories
  • Playbooks
  • Blog
  • About
    Splunk Threat Reasearch Team (STRT)

    Splunk Threat Reasearch Team (STRT)

    We help security teams around the globe strengthen operations by providing tactical guidance and insights to detect, investigate and respond against the latest threats.

    • The Mothership
    • Website
    • Email

    Recent Posts

    Detection of tools built by NirSoft

    Software Deployment Tools

    Abnormally High AWS Instances Launched by User

    Cloud Accounts

    Detect DNS requests to Phishing Sites leveraging EvilGinx2

    Spearphishing via Service

    EC2 Instance Started With Previously Unseen User

    Cloud Accounts

    Abnormally High AWS Instances Terminated by User - MLTK

    Cloud Accounts

    • Previous
    • 1
    • …
    • 234
    • 235
    • 236
    • 237
    • 238
    • …
    • 257
    • Next
    • Twitter
    • GitHub
    • Feed
    © 2023 Splunk Threat Research Team (STRT). Powered by Jekyll & Minimal Mistakes.