Change the line ULIMIT_MAX_OPEN_FILES in nva.conf to ULIMIT_MAX_OPEN_FILES=30720 and perform full deploy.
Detection Pitfalls You Might Be Sleeping On
Practical Cyber Deception — Introduction to “Chaotic Good”
“Invoke-Shadow” — Applying Jungian Psychology to Detection Engineering
My 2025 Detection Philosophy and the Pursuit of Immutable Artifacts
Immutable Artifacts — Enabling RDP Connections
Detecting WiFi dumping via direct WinAPI calls and introduction to “Immutable Artifacts”
Detection of “Evil-WinRM”
Detection of “PSExec.py”
Detection of “EDRSilencer”
My 2nd Udemy course “Detection-as-Code in IBM QRadar” is live. Grab it for free for a limited time!
Detection knowledge repository – by Daniel Koifman