❌

Reading view

Uplevelling Black Hat Threat Hunters

Once you ingest major telemetry sources, how can we add value for our Threat Hunters? Check out how we brought in potentially malicious sandbox submissions to the analysts’ queue for triage.
  •  

Defenseclaw for On-Prem AI SOC Workflow at Black Hat Asia

At Black Hat Asia, we tested a private AI SOC workflow built with Ollama, NVIDIA GPU acceleration, Open WebUI, OpenClaw, DefenseClaw, Cisco AI Defense and MCP integrations, with Splunk audit visibility.
  •  
  •  
  •  

From Flood to Focus: Finding Signal in an β€œOverflow Attempt” Alert Storm

Cisco XDR, Splunk, Cisco Secure Firewall, and Endace (Zeek) were used to investigate a spike in security alerts at Cisco Live EMEA, quickly distinguishing genuine threats from environmental noise through correlated incident analysis and network context.
  •  
❌