- Leveraging RAG for question selection in cyber investigations
The integration of RAG-based question selection has significantly improved our cybersecurity investigation capabilities. By leveraging AI to intelligently select and prioritize investigative questions
September 2024 · 5 min readRead → - SOCPost Black Hat USA 2024: What’s next for cyber
SOC automation and SIEM segments in flux
August 2024 · 2 min readRead → - AwardsBlack Hat USA 2024 recap: Key take aways and observations
Black Hat USA 2024 provided a clear picture of where we stand as an industry and where we need to go. As we navigate these challenges, collaboration, innovation, and a renewed focus on resilience will
August 2024 · 6 min readRead → - Accelerate Okta investigations – sample account takeover analysis
Okta is one of the most used identity providers with various identity and access management solutions. Like other IDAM providers, Okta is a valuable resource for starting identity investigations. Impa
August 2024 · 4 min readRead → - Investigate Microsoft EntraID identities in minutes
Identity-based investigations are one of the most common analyses for security operations. These leads get under the spotlight because of an HR event (various watchlists or user’s last day), a potenti
July 2024 · 4 min readRead → - Context and intent for AI enable effective cyber investigations
Our general philosophy towards AI is simple. We use LLMs to augment the capabilities of our platform. We structure our content (Questions, Facets, Metadata, Prompts, Answers, Relationships) to improve
July 2024 · 6 min readRead → - Identifying Midnight Blizzard and other password spray attacks using Command Zero
For identifying Midnight Blizzard or any password spraying attack in your environment, there are multiple paths you can take with Command Zero: 1) Tracking unusual application consents 2)Tracking pass
July 2024 · 12 min readRead → - Fuel cyber investigations with expert questions
Universal talent gap is a challenge we must operate with in cyber. To combat this, we need to shift from platforms for advanced users only to intrinsically skilled platforms that augment all users. Co
July 2024 · 14 min readRead → - ThreatRediscover threat hunting and investigations
Command Zero set out to solve the most significant bottleneck for security operations: investigations. There are a lot of solutions (like SIEM, SOAR, SOC automation, AI-powered SOC analysts) available
July 2024 · 6 min readRead → - ResearchTransforming cyber investigations: The power of asking the right questions
In the ever-evolving landscape of cybersecurity, the complexity and volume of threats continue to escalate.
July 2024 · 11 min readRead →
See what your team can achieve.
Live in under an hour. No migration. No friction.









