1 talk mention this tool across 1 BSides chapters.
Behavioral endpoint agent that correlates process traces, network data, file operations, and registry changes using state machine detection rules to identify malicious activity