We had a great time at @wildwesthackinfest.bsky.social @ Mile High 2026.
@olafhartong.nl was on stage sharing about his follow-up research. EDRs can be fooled by tampering with the data they rely on. If we can't trust our logs, how do we deal with that?
We look forward to the next edition of #WWHF!
06.03.2026 09:41
π 0
π 0
π¬ 0
π 0
Did you know that there is a very attractive rate for students? π€«
06.03.2026 07:47
π 0
π 0
π¬ 0
π 0
FalconForce is proud to be part of SpecterOps' SO-CON conference in April.
And this year, thereβs not one but two FalconForce talks at #SOCON!
More information and registration: specterops.io/so-con/
09.02.2026 12:14
π 0
π 1
π¬ 0
π 0
SOC analysts spend lots of valuable time on collecting more information, before being able to make decisions.
Want to know more? Join our waitlist (falconforce.nl/services/blu...) and request a demo today.
13.02.2026 14:36
π 0
π 1
π¬ 0
π 0
In a few weeks, we will be in Lausanne, Switzerland, for our 3-day workshop Advanced Detection Engineering in the Enterprise at @1ns0mn1h4ck.bsky.social. Get your tickets now: insomnihack.ch/workshops/ad...
23.02.2026 14:05
π 2
π 0
π¬ 0
π 0
SOC analysts spend lots of valuable time on collecting more information, before being able to make decisions.
Want to know more? Join our waitlist (falconforce.nl/services/blu...) and request a demo today.
13.02.2026 14:36
π 0
π 1
π¬ 0
π 0
FalconForce is proud to be part of SpecterOps' SO-CON conference in April.
And this year, thereβs not one but two FalconForce talks at #SOCON!
More information and registration: specterops.io/so-con/
09.02.2026 12:14
π 0
π 1
π¬ 0
π 0
At FalconForce, we are always looking to enhance our detection engineering practices. In our latest #FalconFriday blog, we present the applied research that was done and our observations on near-real-time (NRT) analytic rules in practice: falconforce.nl/falconfriday...
06.02.2026 12:59
π 0
π 0
π¬ 0
π 0
The Insomni'hack (@1ns0mn1h4ck.bsky.social) cyber security conference takes place in Switzerland from March 16-20. We will once more facilitate our 3-day workshop Advanced Detection Engineering in the Enterprise.
Visit insomnihack.ch/workshops/ad... for more details and to secure your ticket.
12.01.2026 16:47
π 1
π 1
π¬ 0
π 1
FalconForce returns to @nsec.io in Montreal with our 3-day Advanced Detection Engineering workshop! The NorthSec security conference takes places in Montreal, Canada from May 11-17.
More information and registration: nsec.io/training/202...
30.01.2026 15:34
π 1
π 1
π¬ 0
π 1
During a cyber-attack (or red teaming exercise), SOC teams often struggle to detect the βrightβ things.
With Sentry Detect we help you identifying which critical adversary techniques your current out-of-the-box detections miss. More information: falconforce.nl/services/blu...
26.01.2026 09:38
π 0
π 0
π¬ 0
π 0
Weβre happy to join #WWHF once more. @olafhartong.nl has prepared a talk on some great #EDR (follow up) research he has been working on: βIβm In Your Logs Again; Spoofing and Causing Chaosβ. Join him in-person or online on February 13!
Registration: wildwesthackinfest.com
19.01.2026 14:45
π 3
π 2
π¬ 0
π 0
The Insomni'hack (@1ns0mn1h4ck.bsky.social) cyber security conference takes place in Switzerland from March 16-20. We will once more facilitate our 3-day workshop Advanced Detection Engineering in the Enterprise.
Visit insomnihack.ch/workshops/ad... for more details and to secure your ticket.
12.01.2026 16:47
π 1
π 1
π¬ 0
π 1
FalconForce is proud sponsor of the Yellowhat cyber security conference on January 13, 2026.
@olafhartong.nl is co-presenting the talk βInside MDE Telemetry: The Why, The How, and Whatβs Nextβ.
Visit yellowhat.live for event registration. Live Stream is available.
09.01.2026 15:14
π 0
π 0
π¬ 0
π 0
FalconForce is proud to be part of #SpecterOpsβ SO-CON conference in April 2026. Marat will present a talk on abusing misconfigurations in #CyberArk to get high privileges: β4 Get requests = 3 Domain admins: CyberArk magic you didnβt know aboutβ.
Tickets and registration: specterops.io/so-con/
23.12.2025 13:27
π 2
π 0
π¬ 0
π 0
FalconForceβs Agapios brings you an early Christmas presentπ: the second blog in #detectionengineering maintenance. Learn all about how data science can boost your detection maintenance β¦ and keep you from herding sheep. Enjoy the read and happy holidaysπ
falconforce.nl/how-data-sci...
12.12.2025 11:16
π 0
π 0
π¬ 0
π 0
Microsoft recently published a new feature for Defender for Endpoint (#MDE) called Custom Collection.
@olafhartong.nl explains what Custom Collection is and how it work in his blog: falconforce.nl/microsoft-de...
20.11.2025 13:10
π 3
π 2
π¬ 1
π 0
The Oesterreichische Nationalbank hosted this yearβs TIBER-EU Provider Conference called T-REX (TIBER/TLPT Resilience Exchange). It was nice to see so many familiar faces at the TIBER-EU event in Vienna.
#redteaming #TLPT #TIBER #TIBEREU
18.11.2025 15:06
π 0
π 0
π¬ 0
π 0
We believe that community-driven events where people share knowledge about information security are crucial. If we can combine that with an intimate atmosphere, we have a winner!
Thatβs why we have decided to sponsor BSides Amsterdam. www.bsidesams.org
12.11.2025 09:51
π 0
π 0
π¬ 0
π 0
@olafhartong.nl presented his research at #KustoCon on using #Kusto and Kusto Graph for something magical. Olaf investigated if it was possible to do the same thing as #BloodHound, but then only using Kusto Graph. He showcased the need for attack path management.
Slides: github.com/olafhartong/...
11.11.2025 14:25
π 1
π 1
π¬ 0
π 0
GitHub - FalconForceTeam/FalconFriday: Hunting queries and detections
Hunting queries and detections. Contribute to FalconForceTeam/FalconFriday development by creating an account on GitHub.
π‘FalconForce has invested its offensive security knowledge and applied R&D into creating high-fidelity detection content; to detect threats that are in the blind spots of many organizations.
π Try it for yourself on GitHub: github.com/FalconForceT...
#SOC #kusto #detectionengineering #falconfriday
07.11.2025 09:12
π 0
π 0
π¬ 0
π 0
Webinar Sentry Detect - FalconForce
In this webcast, we will take a deep-dive into the inner workings of how we deliver and maintain high-fidelity custom detection content.
#SOCs around the world are responsible for keeping the organizations resilient against cyber attacks.
Our solution "Sentry Detect" is an ideal companion for all SOCs using Microsoft Security products. You can learn more about it: falconforce.nl/webinar-sent...
20.10.2025 07:26
π 0
π 0
π¬ 0
π 0
Slides can be found here: github.com/olafhartong/...
29.09.2025 08:29
π 1
π 0
π¬ 0
π 0
After our βAWS enumeration for purple teamsβ workshop at OrangeCon, we take a next step. In our #FalconFriday blog (falconforce.nl/falconfriday...) Nikolas explains how to catch threat actors that are harvesting information about your AWS policies.
19.09.2025 12:14
π 1
π 0
π¬ 1
π 0
BruCON 0X11 is just a few days away. @olafhartong.nl will present his talk β# Iβm in your logs now, deceiving your analysts and blinding your EDRβ on Friday Sept 26. Olaf will show how defensive tooling (EDRs) can provide attackers with opportunities for deception and disruption.
17.09.2025 11:31
π 3
π 2
π¬ 0
π 0