Tag: netconn_domain

AI-Assisted Domain Detection Logic for Carbon Black in Uncoder AI
AI-Assisted Domain Detection Logic for Carbon Black in Uncoder AI

How It Works This Uncoder AI feature enables instant creation of detection queries for VMware Carbon Black Cloud using structured threat intelligence, such as that from CERT-UA#12463. In this case, Uncoder AI processes indicators associated with UAC-0099 activity and formats them into a syntactically correct domain query. Parsed Threat Data The source threat report includes […]

Read More
Domain-Based IOC Detection for Carbon Black in Uncoder AI
Domain-Based IOC Detection for Carbon Black in Uncoder AI

How It Works 1. IOC Extraction Uncoder AI scans the threat report (left panel) and identifies malicious network infrastructure associated with: HATVIBE and CHERRYSYSPY loaders Suspicious communication and command-and-control domains like: trust-certificate.net namecheap.com enrollmenttdm.com n247.com mtw.ru Explore Uncoder AI These domains are associated with: Fake certificate lures Python-based loaders Malicious HTA stagers Credential theft via […]

Read More