Dealing With False Positives when Scanning Memory Dumps for Cobalt Strike Beacons, (Sun, Aug 28th)
I updated my Cobalt Strike beacon analysis tool 1768.py to deal with false positives in Windows system's memory dumps. http://news.poseidon-us.com/SXMp7L