5min chapter

The Defender's Advantage Podcast cover image

Threat Trends: UNC961 and How Managed Defense Approaches Threat Hunting

The Defender's Advantage Podcast

CHAPTER

How to Hunt for Persistence in a Targeted Environment

A lot of what we do from a hunting perspective is not one for one in terms of hunting detection is something to investigate. Even though the initial find was based on threat hunting even though we're collecting the same data from all these other customers we have the ability to dive into the investigation pull out some events that might be good candidates for alert based detection which we can then deploy to all managed defense customers. The feedback loop is really important once we have a finding from hunting that turned out to be interesting and we're reporting turning that into a detection that actually alerts for the sock to action quicker next time.

00:00

Get the Snipd
podcast app

Unlock the knowledge in podcasts with the podcast player of the future.
App store bannerPlay store banner

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode

Save any
moment

Hear something you like? Tap your headphones to save it with AI-generated key takeaways

Share
& Export

Send highlights to Twitter, WhatsApp or export them to Notion, Readwise & more

AI-powered
podcast player

Listen to all your favourite podcasts with AI-powered features

Discover
highlights

Listen to the best highlights from the podcasts you love and dive into the full episode