Mark Mckinnon
markmckinnon.bsky.social
Mark Mckinnon
@markmckinnon.bsky.social
Reposted by Mark Mckinnon
For those in the #SOC: Alert Triage vs Endpoint Triage

Blog post that is part of our Endpoint Triage series.

Alert triage focuses on validating and prioritizing the EDR/SIEM alert.

Endpoint triage focuses on prioritizing the host. How bad is it?

www.cybertriage.com/blog/alert-t...
Alert Triage vs Endpoint Triage: What SOCs Need to Know
As we talk to corporate security teams about how they respond to incidents and EDR alerts, we find it useful to highlight the Endpoint Triage step in
www.cybertriage.com
March 21, 2025 at 1:38 PM
Reposted by Mark Mckinnon
Cyber Triage 3.13 is the holiday gift you’ve been waiting for:

Integrations that make you faster.

→ MemProcFS integration
→ Expanded S3 integration
→ Detailed sandbox report

Complete 3.13 release notes: www.cybertriage.com/blog/release...
3.13 Adds MemProcFS and Extends the S3 and Recorded Future Sandbox Integrations
Our holiday gift this year is some frequently requested features that came out in the 3.13 release: MemProcFS to support Windows 10 and 11 images
www.cybertriage.com
December 19, 2024 at 10:56 PM