threat-intel Choose your fighter: Balancing competing requirements to select models for your AI SOC Cisco Talos conducted a comprehensive study to determine the best Large Language Model (LLM) for Security Operations Center (SOC) and Digital Forensics & Incident Response (DFIR) tasks, moving beyond simply identifying the ‘best’ model. Their research revealed that a single, top-scoring model wasn't always the optimal… Cisco Talos · 4d ago High llmsocdfir
threat-intel Recent DShield SIEM Update, (Tue, Jul 14th) The DShield SIEM, a honeypot monitoring system, received a recent update incorporating new features and improved logging capabilities. Specifically, the system now collects TTY logs and integrates Suricata alerts, provid… SANS Internet Storm Center · Jul 15, 2026 Medium honeypotthreat-detectionlog-analysis