
THOR Collective
@thor_collective
ID: 1891176685434994688
http://thorcollective.com 16-02-2025 17:24:21
22 Tweet
21 Followers
5 Following

🎧 Ask-a-Thrunter: Episode 1 is live! THOR Collective covered everything from hunt standups to VirusTotal vs. behavioral hunting and announced our April giveaway winner! Replay: dispatch.thorcollective.com/p/ask-a-thrunt… Should we make this monthly? Drop a comment below.


💡 New guest drop on THOR Collective Dispatch: "Detection-in-Depth" by Day Johnson. Day covers how to build resilient detection systems that handle real-world challenges, from fine-tuning rules to threat emulation and kill chain coverage. dispatch.thorcollective.com/p/detection-in…

Just dropped a guest post on THOR Collective dispatch! Read it here: open.substack.com/pub/thorcollec… I explore the mindset of detection-in-depth, which is first a play on the existing “defense-in-depth” concept, outlining a strategy where defenders aim to catch adversaries across

💥 New SPL Dispatch drop from THOR Collective: eventstats 💥 Want to flag weird behavior without losing raw data? eventstats lets you compare each event to the group without rolling things up. Read it here 👉 dispatch.thorcollective.com/p/every-event-…

🚨New guest drop on THOR Collective Dispatch!🚨 "Exploring Cybersecurity Career Paths and How They Work Together" by Audra Streetman Whether you're into offense, intel, or cyber defense, there's a path for you! Read it here: dispatch.thorcollective.com/p/exploring-cy…

🤖 New THOR Collective post 🤖 Today we are discussing practical ways to integrate AI into your hunt team and your threat hunting practices. Don't forget to follow all applicable organizational data privacy rules! Join us: dispatch.thorcollective.com/p/ai-is-my-bes… #THORCollective #threathunting

Introverts rewrite detection rules repeatedly, while extroverts demo them mid-draft. In cybersecurity, you need both. Today's THOR Collective Dispatch features Alex Hurtado, highlighting how embracing differences strengthens SOC teams. Read it here 👉 : dispatch.thorcollective.com/p/quiet-loud-a…

🐏 Ask a Thrunter AMA + Giveaway! Join THOR Collective live next THORsday, May 29th @ 7pm PT in Discord. We’ve got a special announcement and we’ll reveal the monthly giveaway winner (all paid Dispatch subscribers automatically entered!). Submit your questions early👇

✨ New THOR Collective post ✨ Introducing Threat Hunting Relevancy Factors (THRF!) These factors can help you create relevant hunts and tangible impact for your organization. Show your business that you mean bzns. 📈 Join us at 👉: dispatch.thorcollective.com/p/threat-hunti… #threathunting

.THOR Collective this is a hilarious but also neat thrunting example "Once executed, TOUGHPROGRESS creates a zero minute Calendar event at a hardcoded date, 2023-05-30, with data collected from the compromised host being encrypted and written in the Calendar event description"

The May Dispatch is live. Fresh insights from THOR Collective and guest contributors on detection in depth, AI in the SOC, career overlaps, and making your hunts actually matter. Plus memes. Obviously. 👉 dispatch.thorcollective.com/p/dispatch-deb…

THOR Collective #threatintelligence #threathunting #splunk #cybersecurity #infosec #THORcollective #thrunting #AIisMyBestie

🚨 New post on THOR Collective Dispatch 🚨 Red with Benefits: Purple Teaming with Sliver Beacons Sliver isn’t just for flexing during pentests, it’s your new favorite detection engineering wingman. 👇 dispatch.thorcollective.com/p/red-with-ben…


📻 New drop on THOR Collective Radio! LLMs, supply chain, & a surprise, oh my! 👀 Thanks to subscriber Austin for the Qs: PEAK, rule validation, & the eternal alert vs. event vs. incident debate. Listen now 🎧: dispatch.thorcollective.com/p/ask-a-thrunt… #thrunting #infosec #cybersecurity

⚡ New THOR Collective Dispatch drop No hallucinations here. Just TTPs that quietly defined Q1 2025. 🔐 OAuth abuse 📦 Malicious packages 🖥️ SimpleHelp RMM exploits Stay ahead with what to hunt & where to look. 👉 dispatch.thorcollective.com/p/from-the-fir… #THORCollective #threathunting

🚨 New post on THOR Collective Dispatch 🚨 "If I Were a Threat Hunter..." From LLM prompt hunting to resurrecting retired rules. 5 ideas from a Red Teamer on what threat hunting could be. Curious? Inspired? Maybe both. Read it here 👉 dispatch.thorcollective.com/p/if-i-were-a-… #thrunting

🚨 New THOR Collective Dispatch drop: 🚨 Purple Teaming the Fallout A Red Team view on cyber threats from the Israel–Iran conflict and how to harden U.S. infrastructure with MITRE-driven Purple Teaming. Read it here: dispatch.thorcollective.com/p/purple-teami… #CyberSecurity #thrunting