Featured How do you defend when the time between patch and exploit collapses? Discover how AI models like Claude Mythos collapse the vulnerability exploit window, and why an assume-breach mindset and NDR are now essential. Ashish Malpani Apr 9, 2026
network security Detecting Quasar Windows RAT Detect Quasar RAT malware with Corelight’s open-source Zeek script, leveraging Quasar’s default TLS configuration. Tillson Galloway Nov 22, 2024
network security Detecting Abuse of NetSupport Manager Learn how to use Zeek to easily detect malicious use of NetSupport Manager. Tillson Galloway Sep 11, 2024
Zeek Detecting CVE-2022-30216: Windows Server Service Tampering Corelight Labs reviewed a POC exploit for CVE-2022-30216 and wrote a Zeek-based detection and released the package on GitHub. Tillson Galloway Aug 9, 2022