Skip to content
  • There are no suggestions because the search field is empty.

Corelight recognized as a leader in the 2025 Gartner Magic Quadrant™ for network detection and response

Corelight recognized as a leader in the 2025 Gartner Magic Quadrant™ for network detection and response

Corelight Bright Ideas Blog

This is the Custom Rich Text module

Feel free to edit this text to reflect your unique voice and message. Tell visitors what you do, why you do it, and what sets you apart.

Blog Dashboard
malware

Detecting the STRRAT Malware Family

In recent months STRRAT has become one of the top malware families submitted to Any.Run. Here's how to detect it.

Zeek

Detecting Gozi Banking Malware

I ran into a sample of the Gozi banking malware in the wild. This is how I developed an open source detection package to find it with Zeek.

Zeek

Pingback: ICMP Tunneling Malware

This blog will introduce a method of detecting the Pingback malware in which attackers often hide their communications in ping message payloads.

Zeek

DNS over TLS and DNS over HTTPS

In this post, we’ll explore DNS over TLS (DoT) and DNS over HTTPS (DoH). Before examining DoT and DoH, it’s important to take a quick look at DNS...