| 2018-07-10 | Categorising and Enriching Security Events in an ELK with Sysmon and ATT&CK | ourren | 2271 | |
| 2018-07-06 | dftimewolf: A framework for orchestrating forensic | ourren | 7379 | |
| 2018-07-02 | AccessLogAnylast: 支持Nginx、Apache、Tomcat等标准WEB日志的分析 | ourren | 3069 | |
| 2018-07-02 | Log-killer: Clear all your logs in [linux/windows] servers | ourren | 2744 | |
| 2018-06-29 | Threat Hunting-威胁狩猎分享 | ourren | 3663 | |
| 2018-06-26 | 浅谈威胁情报从甲方运营到乙方交付 | ourren | 2396 | |
| 2018-06-19 | honeytrap: Advanced Honeypot framework | ourren | 3020 | |
| 2018-06-13 | How to accelerate Suricata, Bro, Snort with PF_RING FT | ourren | 2573 | |
| 2018-06-12 | 从EDR到威胁情报运营—浅谈终端化的情报部署 | ourren | 2936 | |
| 2018-06-06 | Tracing stolen bitcoin 如何追踪被盗比特币的一些讨论 | ourren | 1802 | |
| 2018-06-06 | ClickHouse与威胁日志分析 | ourren | 2808 | |
| 2018-06-05 | 使用 Rekall 和 WinPmem 进行内存取证 | ourren | 3205 | |
| 2018-06-05 | backdoorme: powerful auto-backdooring utility | ourren | 6016 | |