| eval specialty="Purple Team, Treat Hunter, Lifting Heavy Things"
Full behavioral breakdown in our latest Hunt Mode post.
🦀 nebulock.io/blog/hunting...
Full behavioral breakdown in our latest Hunt Mode post.
🦀 nebulock.io/blog/hunting...
I used AI more from my phone last month than from my desk. What mattered was removing friction and building where ideas show up.
👉 New on @thorcollective.bsky.social Dispatch:
dispatch.thorcollective.com/p/you-dont-n...
I used AI more from my phone last month than from my desk. What mattered was removing friction and building where ideas show up.
👉 New on @thorcollective.bsky.social Dispatch:
dispatch.thorcollective.com/p/you-dont-n...
If you’ve written a query, a script, or an automation to fix a problem, you’re already building.
In the latest @thorcollective.bsky.social Dispatch, we talk about why building is a core security skill.
dispatch.thorcollective.com/p/why-you-sh...
If you’ve written a query, a script, or an automation to fix a problem, you’re already building.
In the latest @thorcollective.bsky.social Dispatch, we talk about why building is a core security skill.
dispatch.thorcollective.com/p/why-you-sh...
Detect the attack, not the sample.
Shoutout Jamf Threat Labs 🙌
nebulock.io/blog/hunting...
Detect the attack, not the sample.
Shoutout Jamf Threat Labs 🙌
nebulock.io/blog/hunting...
This year was about doing the work, writing it down, and sharing it anyway.
If you read, argued, bookmarked, or built alongside us, thank you.
Happy New Year. Happy thrunting.
dispatch.thorcollective.com/p/80-posts-l...
This year was about doing the work, writing it down, and sharing it anyway.
If you read, argued, bookmarked, or built alongside us, thank you.
Happy New Year. Happy thrunting.
dispatch.thorcollective.com/p/80-posts-l...
Meet the Agentic Threat Hunting Framework (ATHF).
Tired of copy-pasting the same hunt template over and over? Same. I built a framework designed for an AI-assisted future that adds structure, memory, and context to every hunt.
Come check it out!
nebulock.io/blog/agentic...
Meet the Agentic Threat Hunting Framework (ATHF).
Tired of copy-pasting the same hunt template over and over? Same. I built a framework designed for an AI-assisted future that adds structure, memory, and context to every hunt.
Come check it out!
nebulock.io/blog/agentic...
Come thrunt with us.
dispatch.thorcollective.com/p/dispatch-d...
Come thrunt with us.
dispatch.thorcollective.com/p/dispatch-d...
“Aligning Risk Management and Threat-Informed Defense Practices (Part 2)” by Micah VanFossen
What happens when you sync risk, controls, and threat intel to drive real-security outcomes.
dispatch.thorcollective.com/p/aligning-r...
#thrunting #grc
“Aligning Risk Management and Threat-Informed Defense Practices (Part 2)” by Micah VanFossen
What happens when you sync risk, controls, and threat intel to drive real-security outcomes.
dispatch.thorcollective.com/p/aligning-r...
#thrunting #grc
Purple teaming isn’t shiny. It’s delays, blockers, tickets & pivots. And that’s okay.
open.substack.com/pub/thorcoll...
#thrunting #PurpleTeaming
Purple teaming isn’t shiny. It’s delays, blockers, tickets & pivots. And that’s okay.
open.substack.com/pub/thorcoll...
#thrunting #PurpleTeaming
Same.
Meet the PEAK Threat Hunting Template. Built to make your hunts repeatable, reviewable, and impossible to lose.
👉 Read on THOR Collective Dispatch - dispatch.thorcollective.com/p/the-peak-t...
Same.
Meet the PEAK Threat Hunting Template. Built to make your hunts repeatable, reviewable, and impossible to lose.
👉 Read on THOR Collective Dispatch - dispatch.thorcollective.com/p/the-peak-t...
Guest post with @kassafras09.bsky.social
AI hype is loud. Most teams are just automating chaos.
Fix the basics first. Then scale the magic.
Read it on @thorcollective.bsky.social Dispatch.
dispatch.thorcollective.com/p/the-autono...
Guest post with @kassafras09.bsky.social
AI hype is loud. Most teams are just automating chaos.
Fix the basics first. Then scale the magic.
Read it on @thorcollective.bsky.social Dispatch.
dispatch.thorcollective.com/p/the-autono...
IOCs show where the fire was.
TTPs show where it will be.
dispatch.thorcollective.com/p/hunting-be...
IOCs show where the fire was.
TTPs show where it will be.
dispatch.thorcollective.com/p/hunting-be...
Full recap here:
dispatch.thorcollective.com/p/dispatch-d...
Full recap here:
dispatch.thorcollective.com/p/dispatch-d...
Sometimes “nothing” is the loudest signal that your defenses worked.
@jotunvillur.bsky.social breaks down how to measure the quiet wins in in one of my favorite @thorcollective.bsky.social Dispatch posts:
dispatch.thorcollective.com/p/measuring-...
Sometimes “nothing” is the loudest signal that your defenses worked.
@jotunvillur.bsky.social breaks down how to measure the quiet wins in in one of my favorite @thorcollective.bsky.social Dispatch posts:
dispatch.thorcollective.com/p/measuring-...
👉 dispatch.thorcollective.com/p/hunting-be...
👉 dispatch.thorcollective.com/p/hunting-be...
This week’s @thorcollective.bsky.social SPL Dispatch breaks down how to use timechart to uncover rhythm, automation, and the a cron job masquerading as “normal.”
dispatch.thorcollective.com/p/the-shape-...
This week’s @thorcollective.bsky.social SPL Dispatch breaks down how to use timechart to uncover rhythm, automation, and the a cron job masquerading as “normal.”
dispatch.thorcollective.com/p/the-shape-...
Part 2 of the @thorcollective.bsky.social Dispatch Agentic Threat Hunting series covers the first step to scaling: put your hunts in a GitHub repo and give your AI bestie memory.
dispatch.thorcollective.com/p/agentic-th...
Part 2 of the @thorcollective.bsky.social Dispatch Agentic Threat Hunting series covers the first step to scaling: put your hunts in a GitHub repo and give your AI bestie memory.
dispatch.thorcollective.com/p/agentic-th...
🎶 Check out Life of a Detection Girl - a playlist I created inspired by Taylor Swift and Alex Hurtado, with a touch of cyber woven in.
Give it a listen and let me know your favorite track!
suno.com/playlist/5cf...
🎶 Check out Life of a Detection Girl - a playlist I created inspired by Taylor Swift and Alex Hurtado, with a touch of cyber woven in.
Give it a listen and let me know your favorite track!
suno.com/playlist/5cf...
2K subscriber milestone 🎉
15 baseline examples
The great data vs. data debate
Plus: Is Git the future of hunting collab?
🎧: dispatch.thorcollective.com/p/ask-a-thru...
2K subscriber milestone 🎉
15 baseline examples
The great data vs. data debate
Plus: Is Git the future of hunting collab?
🎧: dispatch.thorcollective.com/p/ask-a-thru...
🔗 dispatch.thorcollective.com/p/dispatch-d...
🔗 dispatch.thorcollective.com/p/dispatch-d...
@thorcollective.bsky.social
just dropped 10 baseline hunts you can shine in the dark parts of your env and magnify the adversaries from the noise.
Join us for all the thrunting 👉: open.substack.com/pub/thorcoll...
#threathunting #infosec
@thorcollective.bsky.social
just dropped 10 baseline hunts you can shine in the dark parts of your env and magnify the adversaries from the noise.
Join us for all the thrunting 👉: open.substack.com/pub/thorcoll...
#threathunting #infosec
@thorcollective.bsky.social Dispatch with @kassafras09.bsky.social from March. The message still stands.
• Fix biased job reqs
• Put diverse voices on panels
• Mentor future hackers
• Model inclusive leadership
dispatch.thorcollective.com/p/why-we-nee...
@thorcollective.bsky.social Dispatch with @kassafras09.bsky.social from March. The message still stands.
• Fix biased job reqs
• Put diverse voices on panels
• Mentor future hackers
• Model inclusive leadership
dispatch.thorcollective.com/p/why-we-nee...
In this week’s @thorcollective.bsky.social Dispatch, Courtney Shar shares how project management skills like risk alignment, process design, and team coordination directly strengthen security programs.
👉 dispatch.thorcollective.com/p/beyond-hac...
In this week’s @thorcollective.bsky.social Dispatch, Courtney Shar shares how project management skills like risk alignment, process design, and team coordination directly strengthen security programs.
👉 dispatch.thorcollective.com/p/beyond-hac...
Certis Foster didn't hunt for it.
It revealed itself.
The key? Plotting behavior in 3D space:
🕒 Time
🗺️ Terrain
🎯 Behavior
Outliers can’t hide in 3D.
dispatch.thorcollective.com/p/cant-hide-...
#threathunting #thrunting #THORcollective
Certis Foster didn't hunt for it.
It revealed itself.
The key? Plotting behavior in 3D space:
🕒 Time
🗺️ Terrain
🎯 Behavior
Outliers can’t hide in 3D.
dispatch.thorcollective.com/p/cant-hide-...
#threathunting #thrunting #THORcollective
Our latest @thorcollective.bsky.social Dispatch post breaks down 5 baselines every thrunter needs.
Map normal. Track drift. Catch threats.
Read here: dispatch.thorcollective.com/p/you-cant-f...
Our latest @thorcollective.bsky.social Dispatch post breaks down 5 baselines every thrunter needs.
Map normal. Track drift. Catch threats.
Read here: dispatch.thorcollective.com/p/you-cant-f...