Michael KoczwaraDiamond Model of Intrusion Analysis in PracticeLetsDefend: SOC171-Spring4ShellMay 30, 20221May 30, 20221
Michael KoczwaraLetsDefend: Suspicious Certutil.exe UsageLetsDefend — SOC163 WriteUpMay 25, 2022May 25, 2022
Michael KoczwaraLetsDefend: Hijacked NPM Package/Supply Chain CompromiseHijacked NPM walkthroughJan 3, 20221Jan 3, 20221
Michael KoczwaraIncident Response Log4j RCE Exploit Analysis-LetsDefendLetsDefend Log4J RCE Exploit Analysis walkthroughDec 31, 2021Dec 31, 2021
Michael KoczwaraTHM: Windows Server Attack Analysis: Part OneInvestigating Windows Server 2016 Part OneSep 28, 2021Sep 28, 2021