Welcome to the StrangeBee Blog!
Our latest insights about TheHive and incident response

Food for thought
What is DFIR? How a police investigation explains modern incident response
Broken windows, suspicious IPs and cold cases: a phase-by-phase guide to the DFIR lifecycle through the lens of detective work

Food for thought
Security incident prioritization: proven methods to improve alert triage
Not every alert deserves the same urgency. Here's how SOC, CERT, CSIRT and MSSP teams can prioritize threats with context and confidence.

Announcement
TheHive 5.7: ready when you are!
Introducing the support of OAuth2 in Alert Feeder, case-insensitive observable types, MFA enforcement and bulk response on observables.
























