Defence Logic Limited
364 posts

Defence Logic Limited
@DefenceLogic
A boutique cyber security firm based in Jersey offering various services and solutions.

@yamatosecurity Thanks for the feedback These are the rules reg. false positives& tuning critical - should never produce FPs high - can produce FPs with custom software, shouldn't produce FPs with standard software medium - noteworthy events, no alerting, FPs accepted low + info - FPs accepted






I've created a Cookiecutter template for pySigma conversion packends and processing pipelines: github.com/SigmaHQ/cookie… Create your own backend from this template with: cookiecutter github.com/SigmaHQ/cookie…

Not as cool as other things related to #Follina, but there's a chance to execute High IL payload with some additional clicks. UAC prompt bypass, though.




@SwiftOnSecurity It does.


















