#DetectionandResponse

Marco Ciappelli🎙️✨:verified: :donor:Marcociappelli@infosec.exchange
2025-05-08

As you know — well, now you do 😬 — Marco Ciappelli and Sean Martin, CISSP, are now hosting webinars on ITSPmagazine!

Yes, webinars are everywhere — but these are different:
ITSPmagazine #Webinars are More Than Just a Presentation.
They’re Real Conversations That Matter.

🎙️ Join us live on May 8 (or catch it On Demand) for an incredible conversation with Fred Wilmot.

You already know it’s going to be an awesome one — don’t miss it! ✨

Rethink, Don’t Just Optimize: A New Philosophy For Intelligent Detection And Response — An ITSPmagazine Webinar With Detecteam

Traditional detection and response is overdue for a rethink. This webinar explores the limits of optimization, the danger of misleading metrics, and a new approach focused on adaptability, behavior-driven signals, and speed. See how Detecteam’s REFLEX Platform helps teams turn weak signals into fast, actionable detections—before attackers have time to move.

REGISTER: crowdcast.io/c/rethink-dont-ju

#cybersecurity, #detectionandresponse, #threatdetection, #incidentresponse, #securityoperations, #infosec, #cyberdefense, #securitystrategy, #threatintel, #detecteam #infosecurity

2023-08-10

👀 Looking to implement, replace, or augment your existing #EDR vendor? Our new primer on endpoint #DetectionandResponse shares:

1 .What EDR is and how it fits into the SOC Visibility Triad
2. Factors and limitations to consider when choosing an EDR solution
3. How EDR can be complemented by #NDR to create extended visibility

Check it out ➡️ corelight.com/resources/glossa

At #BH2023 and want to learn more about the power of EDR and NDR? Swing by Geoff Kasten’s (@corelight) “The Evolution of Defense: How Corelight and CrowdStrike are Forming the Foundation of XDR” at 1:30 p.m. PDT in @crowdstrike booth #1620.

#EndpointSecurity #NetworkSecurity #Cybersecurity #DFIR #BlackHat #BlackHatUSA #BlackHat2023

2023-07-18

What is network detection and response, how is it fundamental to #cybersecurity, and why should #investors and #security leaders be investing in the #NDR space? Watch as @corelight CEO Brian Dye shares the answers to these questions and more in a new interview with the New York Stock Exchange (NYSE).

In the video you’ll hear Brian talk about how:

1. A Corelight customer used our Open NDR Platform to confidently turn down a #ransomware demand.

2. Our technology is fueled by the breadth and depth of network data that can only come from an #opensource community of elite defenders.

3. We’re the first to integrate Open AI into our NDR technology to accelerate investigation workflows through contextual network evidence.

To watch Trinity Chavez's conversation with Brian as well as her complete portfolio of interviews with other leaders in the cybersecurity space, visit the NYSE "Cyber Series" landing page: nyse.com/insights/conversation

Want to learn more about Corelight and its evidence-based approach to #security? Visit our website: corelight.com/solutions/why-ev

#CISO #NetworkSecurity #DetectionandResponse #ArtificialIntelligence #DFIR #CyberDefense #CybersecurityLeadership

2023-06-28

Going to #splunkconf23? Visit booth M116 on July 17-19 to see how @corelight and @splunk amplify threat detection and response while reducing stress on over-extended #SOC teams. Book your demo of Corelight + Splunk at the show today: corelight.com/resources/events

During the demo we'll show how Corelight's integrated Common Information Model (CIM) can give your #security teams actionable insight into everything that crosses your network for optimal visibility and threat investigation.

Don't want to wait until July? Book a demo with our team of experts today: corelight.com/products/demo

#NetworkSecurity #Splunk #DetectionandResponse #ThreatDetection #IncidentResponse #DFIR

2023-06-27

We’re proud to help defend #BHUSA! Come see our team of @corelight #security experts in the Black Hat Network Operations Center (NOC) alongside Arista Networks, @cisco Secure, Lumen Technologies, NetWitness, and @paloaltontwks on Aug. 5-10. Stop by booth #2652 or visit our website to learn more: corelight.com/resources/events

For more on our participation in the Black Hat NOC, check out these blogs:

✔️ "Corelight Now Helps Defend Black Hat Events": corelight.com/blog/corelight-n

✔️ "Lessons Learned in the Black Hat Asia NOC": corelight.com/blog/black-hat-a

#DFIR #NetworkSecurity #NetOps #SecOps #DetectionandResponse

2023-06-14

Last month, @corelight had the distinct privilege of helping provide availability and network security overwatch to the Black Hat Asia network in Singapore alongside Arista Networks, @cisco Secure, NetWitness, @paloaltontwks, and MyRepublic. In a new blog, our own @dlee shares what it was like to be part of the #BlackHat Network Operations Center (NOC), the key takeaways that the team learned during #BlackHatAsia23, and what they’ll be carrying with them into future Black Hat conferences—especially #BHUSA in Las Vegas.

👉 Read it here: corelight.com/blog/black-hat-a

Again, a big thank you to Dustin, James Pope, Eldon Koyle, Mark Overholser, and Mario De Tore on successfully helping to defend #BlackHatAsia23!

🎩 To learn more about Corelight's involvement in the Black Hat NOC, check out this blog: corelight.com/blog/corelight-n

🌇 Planning to go to Black Hat in Las Vegas? Come see our Corelight team in the NOC and at booth #2652: corelight.com/resources/events

#NetworkSecurity #DFIR #NDR #NetworkOperations #DetectionandResponse

2023-05-12

Congratulations to our own James Pope, Dustin Lee, Eldon Koyle, Mark Overholser, and Mario De Tore on successfully defending #BlackHatAsia23 alongside Arista Networks, @cisco Secure, NetWitness, and @paloaltontwks! We look forward to being a part of the Black Hat Network Operations Center (NOC) at the next BlackHat event. Learn more about Corelight's involvement in the NOC here: corelight.com/blog/corelight-n

For more on our evidence-based approach to #networksecurity, visit our website: corelight.com/solutions/why-ev

#DFIR #NDR #NetworkOperations #DetectionandResponse

2023-05-09

#BlackHatAsia23 is here! If you're at Black Hat, swing by the "fishbowl" to see our Corelight team working alongside Arista Networks, @cisco Secure, NetWitness, and @paloaltontwks to defend the event. We are proud that our Open Network Detection and Response (#NDR) solution has been chosen by the esteemed Black Hat Network Operations Center (NOC) to help defend their networks at Black Hat events worldwide: corelight.com/blog/corelight-n

Visit our website to learn how our Open NDR Platform:

- Expands network visibility

- Unlocks new #threathunting capabilities

- Accelerates #incidentresponse

➡️ corelight.com/products/open-nd

#DFIR #NetworkSecurity #NetworkOperations #DetectionandResponse

2023-05-01

Join our @corelight_inc experts tomorrow at @afcea's 2023 #TechNetCyber. Drop by booth #2745 to learn about our data-first approach to Network #DetectionandResponse (#NDR), and be sure to sign up for our networking event with August Schell. Sign up here: bit.ly/40TfmJk

Our team will be on hand to share how our network data / evidence can help your organization:

-Expand visibility across your environment to eliminate blindspots

-Improve #threatdetection coverage & alert accuracy

-Accelerate #incidentresponse with a single source of network truth

-Reduce #SOC costs by consolidating & amplifying #security toolsets

You can also visit our website to learn more about our evidence-based approach: corelight.com/solutions/why-ev

#NetworkSecurity #DFIR #SecurityOperations

2023-04-27

We are humbled and honored to be recognized with this awesome award, Cyber Defense Magazine and Gary Miliefsky! Thank you for ranking us as a top #NDR vendor. It is great to see our own Brian Dye accepting our new hardware! Onward and upward 🚀

Looking to include network #detectionandresponse in your stack of #securitysolutions?

Read this primer: corelight.com/resources/glossa

Then ask us how @corelight_inc's "Next Gen" capabilities can help accelerate your #incidentresponse and #threatdetection capabilities: corelight.com/contact

#NetworkDetection #DFIR #CyberDefense #CDM #InfoSec #RSA #RSAC

2023-04-27

#RSAC isn't over yet! Let's see what's on deck for day 3: lnkd.in/gSb8pu4W

🎤 "Disasters’ First Responders - Nonprofits, the Other Critical Infrastructure"
📣 Kelley Misata, @corelight_inc Director of Open Source
🕥 10:50 a.m. PST
📍 Moscone West 2006
More here: lnkd.in/gCtvHXqw

📣 Matt Bromiley, @limacharlieio (@sansinstitute)
🕥 11:00 a.m. PST
📍 Corelight #RSAConference booth #1555
More here: rsaconference.com/usa/agenda/s

🎤 "Accelerate Threat Hunting with Unified Network and Endpoint Data"
📣 Corelight, Jackie McGuire of @cribl_io, and @crowdstrike
🕥 1:30 p.m. PST
📍 CrowdStrike #RSA booth #6144
More here: cribl.io/events/rsa2023/

Lastly, before you go, be sure to connect with our team of experts. We'd love to give you a personalized demo of our #incidentresponse, #PCAP, #threathunting, and network #detectionandresponse capabilities: corelight.com/resources/events

#DFIR #NetworkSecurity #EndpointSecurity #SIEM #BetterTogether #RSAC2023

2023-04-26

Today's #cyberrisk is like Newton's Third Law of Motion. As networks become more complex, the risk of a #cyberattack becomes greater. @corelight_inc's own Matthew Ellison talked about this and more during his presentation at e-Crime & Cybersecurity Congress Event in the Nordics.

During his presentation "Shake the Box: Understanding Network Evidence in an Encrypted and Containerised World," Matt discussed why:

1. Network monitoring still offers defenders a compelling vantage point to mitigate #cyber risk and how it fuels #detectionandresponse
2. Network traffic is still the best evidence to support a solid #cyberdefense and #securityposture

Want to take an evidence-based approach to your #securitystrategy? Contact us for more information: corelight.com/solutions/why-ev

#DFIR #NetworkSecurity #NDR #EndpointSecurity #EDR #XDR

2023-04-26

Missed Joe Gordon at the Microsoft Security booth? No worries! Come hear Joe talk about the threat #detectionandresponse power of @corelight_inc + Microsoft.

🎤 "Fueling IoT Investigations with Microsoft Security and Corelight"
🕝 2:30 p.m. PST
📍 #RSA booth #1555, Moscone South Hall

More info about #RSA2023 here: corelight.com/resources/events

You can also learn more about Corelight + Microsoft on our website: corelight.com/products/allianc

#DFIR #IoT #NetworkSecurity #RSAConference

2023-04-26

That's a wrap on day 1 at #RSA2023! A big thank you to all who spoke in our @corelight_inc booth and at our partner booths. We especially loved hosting Alan J. White of @mandiant this afternoon, as he shared why Corelight and Mandiant are #bettertogether. Want to learn more about Corelight + Mandiant? Stop by #RSA booth #1555 to learn more or visit our website: corelight.com/products/allianc

A big thank you to Alan and Melissa Smith for the session today!

#RSAConference #DFIR #IncidentResponse #Cybersecurity #NetworkSecurity #DetectionandResponse #MDR #ManagedSecurityServices RSA Conference

2023-04-26

We all remember the 2021 SolarWinds #vulnerability 🫣 @strandjs from @ActiveCountermeasures stopped by our #RSA2023 booth today to share how he was able to identify a compromised instance of SolarWinds within a customer environment using @corelight_inc — before the #CVE was even disclosed. During his "Identifying Compromised Systems" session, John shared how he uses Corelight network evidence from Zeek logs to conduct #threathunting missions, and talked about the importance of open-source technologies in #security.

A big thank you to John for the session today!

To learn more about open-source Zeek and how it is the foundational to the Corelight Open #NDR Platform, visit our website: corelight.com/products/zeek/ You can also learn more about Zeek by following @zeekurity.

For more on why evidence-led security is so important when evaluating Network #DetectionandResponse vendors, check out our new NDR primer:
corelight.com/resources/glossa

#NetworkSecurity #DFIR #OpenSource #Cybersecurity #RSA #RSAConference

2023-04-25

Today, @crowdstrike's Adam Hogan showed #RSAC2023 attendees how leveraging the network evidence from @corelight_inc's Open NDR Platform in CrowdStrike LogScale enables historical #cyber investigations, advanced #threathunting, and a solid #security posture. At RSA, but missed the session? Don't worry! You can catch an encore presentation of Adam's presentation tomorrow at 2 p.m. PST in Corelight booth #1555. corelight.com/resources/events

Want to learn how the unified telemetry of Corelight Open #NDR + CrowdStrike #EDR can optimize your #threatdetection capabilities? Visit our website: corelight.com/products/allianc

#NetworkSecurity #DetectionandResponse #EndpointSecurity #DFIR

2023-04-23

Awesome threat detection
A curated list of awesome threat detection and hunting resources.

github.com/0x4D31/awesome-thre

#threathunting #threatdetection #DetectionAndResponse #detectionengineering #detection

2023-04-19

Defending the networks at conferences brimming with security professionals and hackers is no easy task. We are honored to announce that @corelight_inc’s Open Network Detection and Response (#NDR) solution has been chosen by the esteemed Black Hat Network Operations Center (NOC) to help defend their networks at Black Hat events worldwide, alongside Cisco Secure, NetWitness, and Palo Alto Networks. Read more on our blog: corelight.com/blog/corelight-n

You can learn about our Open NDR Platform, which expands network visibility, unlocks new threat hunting capabilities and accelerates incident response here: corelight.com/products/open-nd

#DFIR #NetworkSecurity #NetworkOperations #DetectionandResponse

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst