When Threat Intelligence Outgrows the Spreadsheet: Moving to MISP
For a lot of teams, tracking indicators and notes in a spreadsheet, then feeding them manually into detection and prevention systems, works well for months or even years. As your program grows, you'll eventually want to do things that get harder in a flat table. None of that is impossible in a spreadsheet. It just gets slower and more fragile as volume and complexity grow. For most teams reaching that point, we recommend MISP as the next step. It gives you more structure, correlation, automation and sharing capability without requiring you to build an overly complex CTI environment from day one.
Stay in the loop
Get occasional updates from Cosive about cyber threat intelligence, fraud data sharing, and security operations.
Cosive Partners With Feedly for Threat Intelligence
Cosive has partnered with Feedly! In this post, we’ll talk about how Feedly for Threat Intelligence helps cyber threat intel (CTI) teams collect, prioritise, and share threat intelligence into their tools and why we like it so much here at Cosive as CTI specialists.
Episode #005: Security-focused Code Review for Software Developers with Sid Odgers
Cosive's Software Development Lead, Sid Odgers, is a cybersecurity expert who spends his days building secure software. In this podcast you'll learn how Sid approaches code review to make sure that all code shipped to production is secure as well as high-quality. The checklist and tips shared here are language agnostic and will be of use to any software developer who wants to get better at security.
DocIntel & MISP - Threat Intelligence Without Boiling the Ocean
In this three part series Cosive’s Shanna Daly will introduce you to DocIntel, a new centralised knowledge base for your threat intelligence. You’ll learn how to install and configure DocIntel and how to ingest and organise threat intel feeds. Shanna will share ideas and use cases that highlight the immense potential of DocIntel. And finally, you’ll learn how to integrate DocIntel with MISP to make it even more useful.
Meet David Zielezna, Principal Consultant at Cosive
David joined Cosive in 2021 after five years with the Australian Communications and Media Authority (ACMA) and eight years with the Australian Federal Police (AFP). David’s career has spanned many areas of cyber security, from fighting spam and securing the Australian IP address space all the way through to cyber crime investigations and assisting with the prosecution of cyber crime offences. Outside of cyber security David is an avid chef, producing home made charcuteries, ferments and all things delicious.
Meet Emily Etchell, Security Consultant at Cosive
Like many of us in this space, Emily Etchell didn’t start her career in cybersecurity. Instead, Emily began her career in biomedical engineering, designing and building medical devices. Next, Emily started to learn about and work on securing medical devices. And that’s where Emily’s journey into cybersecurity began. Several years later, Emily is now honing her skills in reverse engineering at Cosive.
Anti-phishing Strategies to Defend Your Organisation
If you feel like your phishing response team has been seeing more attacks than ever before, you’re not alone. The frequency of phishing and spearphishing attacks appears to be ever-increasing as people conduct more of their work and personal lives online. This post will cover the state of the art in anti-phishing techniques, with a focus on strategies that SOC teams, anti-phishing teams and fraud teams can use to defend customers against phishing attacks, and staff against spearphishing attacks.
Cyber Threat Intelligence (CTI) Crash Course
Cybersecurity is such a broad domain with so many different areas of expertise that it’s tough to be across them all.We all have known unknowns in the field, and none of us can be experts in everything.That’s why we’re kicking off our “Crash Course” series, where we’ll be diving into different areas of cybersecurity and answering the most common questions about the field.
Meet Chris Horsley, CTO at Cosive
Chris co-founded Cosive seven years ago, alongside Kayne Naughton and Terry MacDonald and serves as the company’s CTO. In this interview we sit down with Chris to cover his cybersecurity origin story, his time working in incident response in Japan, and the founding story behind Cosive.
Establishing a Threat Intel Program: Principles for Security Leaders
One of the more frequent conversations we have with security leaders is how to establish a new threat intelligence program in their organisation. In these conversations there are a few basic principles that we cover because they’re applicable to almost everyone. We’re sharing these principles publicly so that more organisations can learn about our threat intel philosophy and avoid the most common mistakes that can lead to failed programs.





