| 2018-04-22 | 用零宽度字符水印揭露泄密者身份 | ourren | 2865 | |
| 2018-04-19 | weblogger: 针对ctf线下赛流量抓取(php)、真实环境流量抓取分析的工具 | ourren | 5718 | |
| 2018-04-18 | 检测攻击的基础日志服务器 Part2:日志聚合 | ourren | 1916 | |
| 2018-04-09 | Threat Hunting & Adversary Emulation: The HELK vs APTSimulator - Part 1 | ourren | 2227 | |
| 2018-04-09 | Threat Hunting & Adversary Emulation: The HELK vs APTSimulator - Part 2 | ourren | 2124 | |
| 2018-04-08 | Python工具分析风险数据 | bigsec岂安科技 | 5184 | |
| 2018-04-08 | 犯罪情报分析师知识和能力清单(初稿) | ourren | 1824 | |
| 2018-04-04 | A Study on Threat Intelligence Platforms (TIPs) | ourren | 1489 | |
| 2018-04-04 | Threat Hunting via Windows Event Logs | ourren | 1858 | |
| 2018-04-02 | Bitcoin and Cryptocurrency Tracking with the ELK Stack | ourren | 9073 | |
| 2018-03-31 | YARA Rules for Finding and Analyzing in InfoSec | ourren | 2011 | |
| 2018-03-29 | Exploring the opportunities and limitations of Threat Intelligence Platforms | ourren | 2344 | |
| 2018-03-27 | Signature Based Detection of User Events for PostMortem Forensic Analysis | tolive | 1775 | |