Tag: AI Decision Tree

Detecting NimScan Execution with Uncoder AI’s Decision Tree for Cortex XQL
Detecting NimScan Execution with Uncoder AI’s Decision Tree for Cortex XQL

Potentially Unwanted Applications (PUAs) like NimScan are increasingly used by adversaries during the reconnaissance phase to map open ports or identify network assets. Detecting their execution early is key—but doing so with hash-based or path-based rules in Cortex XQL can result in logic that’s functional, but hard to interpret quickly. Uncoder AI’s AI-generated Decision Tree […]

Read More
Exposing Event Log Tampering with Uncoder AI’s AI Decision Tree for Splunk Queries
Exposing Event Log Tampering with Uncoder AI’s AI Decision Tree for Splunk Queries

One of the more advanced tactics in attacker playbooks is tampering with event log configurations to erase traces of compromise. Detecting such attempts via Windows Registry modifications is complex—often involving detailed Splunk queries that filter by registry keys and permissions. To quickly make sense of these queries, analysts are turning to Uncoder AI’s AI-generated Decision […]

Read More