Hilko Bengen
hillu.bsky.social
Hilko Bengen
@hillu.bsky.social
Reposted by Hilko Bengen
EDR on Linux are mostly useless (it's a Windows market) and a black box, anyway. Do it better, with #laurel for logevent transformation and enrichment on the host. #velociraptor is not just for response capabilities. It also gives you further enrichment of […]

[Original post on social.linux.pizza]
October 25, 2025 at 3:19 AM
Reposted by Hilko Bengen
Apparently this Larry David guy is causing quite the furor.
April 23, 2025 at 12:31 AM
I have just published version 0.7.2 of Laurel, the #Linux #auditd post-processing plugin. Enjoy useful, enriched, JSON-formatted audit logs suitable for threat detection in modern #SIEM setups. Laurel is written in #Rust.

github.com/threathunter...
GitHub - threathunters-io/laurel: Transform Linux Audit logs for SIEM usage
Transform Linux Audit logs for SIEM usage. Contribute to threathunters-io/laurel development by creating an account on GitHub.
github.com
April 23, 2025 at 4:59 PM
Reposted by Hilko Bengen
Ab jetzt 104% Zoll auf sane-washing-Texte, die „Trumps geheime Strategie hinter dem Zollkrieg“ erklären wollen.
April 10, 2025 at 8:09 AM
Ich finde es ja gut, dass im #koalitionsvertrag auch Platz für rentnergerechten Humor vorgesehen wurde.
April 9, 2025 at 4:36 PM
I have just released version 0.7.0 of Laurel, the #Linux #auditd post-processing plugin. Enjoy useful, enriched, JSON-formatted audit logs suitable for threat detection in modern #SIEM setups. Laurel is written in #Rust.

github.com/threathunter...
GitHub - threathunters-io/laurel: Transform Linux Audit logs for SIEM usage
Transform Linux Audit logs for SIEM usage. Contribute to threathunters-io/laurel development by creating an account on GitHub.
github.com
March 4, 2025 at 9:21 AM
Reposted by Hilko Bengen
Die ARD wird wohl tagesschau24, das ZDF angeblich ZDFinfo behalten. Zur Zeit sieht es damit so aus, als wäre phoenix ab dem 12. März Geschichte.

Hier kann man noch unterschreiben, wenn man das keine gute Idee findet 👇
Sparen beim ÖRR, ja, gern. Aber phoenix wegrationalisieren? Wo das politische Geschehen begleitet wird? Nach letzter Woche sollte klar sein: keine gute Idee! Allein am Freitag wurde 10 Stunden am Stück live berichtet. Ich mache nie bei Petitionen mit. Aber hier gehöre ich zu den Erstunterzeichnern.
phoenix muss bleiben! - Für eine besser informierte Republik
Jetzt innn.it-Petition unterschreiben & Andréa Roquebert, Diana Barthel-Soycka, Christoph Tölle, Kristian Wiegand unterstützen!
innn.it
February 26, 2025 at 12:43 PM
Reposted by Hilko Bengen
I accidentally glitched while trying to dump some graphics from Bible Builder, a christian DOS game, and accidentally created The Last Supper: Rave Edition
February 10, 2025 at 1:17 PM
Reposted by Hilko Bengen
where's the EO that we've all gotta rename our github branches back from `main` to `master`?
February 6, 2025 at 1:05 AM
Reposted by Hilko Bengen
Und in zwei Jahren realisieren wir das wir ohne Migranten am Arsch sind. #deutschlandimherbst
January 30, 2025 at 2:54 PM
Version 0.6.5 of Laurel, the #Linux #auditd post-processing plugin is out. Enjoy useful, enriched, JSON-formatted audit logs suitable for threat detection in modern #SIEM setups.

github.com/threathunter...
GitHub - threathunters-io/laurel: Transform Linux Audit logs for SIEM usage
Transform Linux Audit logs for SIEM usage. Contribute to threathunters-io/laurel development by creating an account on GitHub.
github.com
January 27, 2025 at 12:33 PM
Version 0.6.4 of Laurel, the #Linux #auditd post-processing plugin is out, github.com/threathunter.... Enjoy useful, enriched, JSON-formatted audit logs suitable for threat detection in modern #SIEM setups.
GitHub - threathunters-io/laurel: Transform Linux Audit logs for SIEM usage
Transform Linux Audit logs for SIEM usage. Contribute to threathunters-io/laurel development by creating an account on GitHub.
github.com
December 16, 2024 at 3:00 PM