
Episode 27: Roberto Rodriguez
Detection: Challenging Paradigms
00:00
How to Be a Successful Detection Engineer
If you want to be a detection engineer quote-unquote somebody that's building the solution then like you actually do have to do the effort to understand how things work. And so it seems like it takes a really long time, but it actually doesn't and then the the cool thing is is that Like for instance if I if I take the time to understand what it how Opening a handle to a process works for credential dumping. You also open handles for process injection for access token manipulation for a number of different techniques.
Play episode from 46:28
Transcript


