<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Velociraptor &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/velociraptor/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Tue, 29 Apr 2025 12:35:00 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Deepening the MDR partnership: Rapid7 now delivers Active Remediation with Velociraptor</title>
		<link>https://noise.getoto.net/2025/04/29/deepening-the-mdr-partnership-rapid7-now-delivers-active-remediation-with-velociraptor/</link>
		
		<dc:creator><![CDATA[Conner Goldstein]]></dc:creator>
		<pubDate>Tue, 29 Apr 2025 12:35:00 +0000</pubDate>
				<category><![CDATA[Managed Detection and Response (MDR)]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=a42e3ee7a6bbb59957410b9a40abf130</guid>

					<description><![CDATA[Powered by our best-in-class, open-source digital forensics and incident response (DFIR) tool, Rapid7 MDR analysts can take direct, approved remediation actions on your behalf.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2025/04/GettyImages-2209566971.jpg" length="0" type="" />

			</item>
		<item>
		<title>Finding the LNK: Techniques and methodology for advanced analysis with Velociraptor</title>
		<link>https://noise.getoto.net/2024/11/01/finding-the-lnk-techniques-and-methodology-for-advanced-analysis-with-velociraptor/</link>
		
		<dc:creator><![CDATA[Matthew Green]]></dc:creator>
		<pubDate>Fri, 01 Nov 2024 13:00:00 +0000</pubDate>
				<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=404c9ca6b77b4e59f6ede25a9d870678</guid>

					<description><![CDATA[In this post, we explore the structure of LNK files using Velociraptor, our open-source digital forensics and incident response (DFIR) tool.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/10/GettyImages-1340424095.jpg" length="0" type="" />

			</item>
		<item>
		<title>Enhancing Velociraptor with the Cado Security Platform</title>
		<link>https://noise.getoto.net/2024/06/11/enhancing-velociraptor-with-the-cado-security-platform/</link>
		
		<dc:creator><![CDATA[Rapid7]]></dc:creator>
		<pubDate>Tue, 11 Jun 2024 16:38:47 +0000</pubDate>
				<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=56b36356cf10b9389777fa0da12d32ab</guid>

					<description><![CDATA[Velociraptor is a robust  open-source tool designed for collecting and querying forensic and incident response artifacts across various endpoints. This powerful tool  allows incident responders to effortlessly gather data from remote systems, regardless of their location.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/06/GettyImages-1489413775.jpg" length="0" type="" />

			</item>
		<item>
		<title>Velociraptor 0.7.2 Release: Digging Deeper than Ever with EWF Support, Dynamic DNS and More</title>
		<link>https://noise.getoto.net/2024/04/30/velociraptor-0-7-2-release-digging-deeper-than-ever-with-ewf-support-dynamic-dns-and-more/</link>
		
		<dc:creator><![CDATA[Rapid7]]></dc:creator>
		<pubDate>Tue, 30 Apr 2024 14:29:26 +0000</pubDate>
				<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=24ae79282073ad6f4e522e269090abf4</guid>

					<description><![CDATA[Rapid7 is very excited to announce that version 0.7.2 of Velociraptor is now fully available for download. In this post we’ll discuss some of the interesting new features.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/04/Screenshot-2023-09-28-at-11.18.37-AM.png" length="0" type="" />

			</item>
		<item>
		<title>How To Hunt For UEFI Malware Using Velociraptor</title>
		<link>https://noise.getoto.net/2024/02/29/how-to-hunt-for-uefi-malware-using-velociraptor/</link>
		
		<dc:creator><![CDATA[Matthew Green]]></dc:creator>
		<pubDate>Thu, 29 Feb 2024 17:32:12 +0000</pubDate>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=252e5684da4910d9113b8b3b731d4caf</guid>

					<description><![CDATA[<p>UEFI threats have historically been limited in number and mostly implemented by nation state actors as stealthy persistence. However, the recent proliferation of Black Lotus on the dark web, Trickbot enumeration module (late 2022), and Glupteba (November 2023) indicates that this historical trend may be changing. </p><p>With this context, it</p>]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2024/02/GettyImages-1128503636-1.jpg" length="0" type="" />

			</item>
		<item>
		<title>Velociraptor 0.7.1 Release: Sigma Support, ETW Multiplexing, Local Encrypted Storage and New VQL Capabilities Highlight the Last Release of 2023</title>
		<link>https://noise.getoto.net/2023/12/29/velociraptor-0-7-1-release-sigma-support-etw-multiplexing-local-encrypted-storage-and-new-vql-capabilities-highlight-the-last-release-of-2023/</link>
		
		<dc:creator><![CDATA[Rapid7]]></dc:creator>
		<pubDate>Fri, 29 Dec 2023 15:52:00 +0000</pubDate>
				<category><![CDATA[Detection and Response]]></category>
		<category><![CDATA[open source]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=4379c7d7b9fa2fb739ee05cde644de41</guid>

					<description><![CDATA[Rapid7 is excited to announce that version 0.7.1 of Velociraptor is live and available for download.  There are several new features and capabilities that add to the power and efficiency of this open-source digital forensic and incident response (DFIR) platform.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/12/Screenshot-2023-12-27-at-11.40.29-AM.png" length="0" type="" />

			</item>
		<item>
		<title>CVE-2023-5950 Rapid7 Velociraptor Reflected XSS</title>
		<link>https://noise.getoto.net/2023/11/10/cve-2023-5950-rapid7-velociraptor-reflected-xss/</link>
		
		<dc:creator><![CDATA[Dr. Mike Cohen]]></dc:creator>
		<pubDate>Fri, 10 Nov 2023 18:56:15 +0000</pubDate>
				<category><![CDATA[Velociraptor]]></category>
		<category><![CDATA[Vulnerability Disclosure]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2c23d3c28b46dd6010745cf0b9bdbdac</guid>

					<description><![CDATA[This advisory covers a specific issue identified in Velociraptor and disclosed by a security code review. Rapid7 Velociraptor versions prior to 0.7.0-4 suffer from a reflected cross site scripting vulnerability.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/11/velociraptor-hero-copy.jpg" length="0" type="" />

			</item>
		<item>
		<title>Little Crumbs Can Lead To Giants</title>
		<link>https://noise.getoto.net/2023/10/05/little-crumbs-can-lead-to-giants/</link>
		
		<dc:creator><![CDATA[Christiaan Beek]]></dc:creator>
		<pubDate>Thu, 05 Oct 2023 17:45:49 +0000</pubDate>
				<category><![CDATA[research]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=10c32e45a90a5bce73c8f39ab4ca8f31</guid>

					<description><![CDATA[This blog offers a deep dive into the world of Shell Link files (LNK) and Virtual Hard Disk files (VHD).]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/10/recog-data.jpeg" length="0" type="" />

			</item>
		<item>
		<title>What’s New in Rapid7 Detection &#038; Response: Q3 2023 in Review</title>
		<link>https://noise.getoto.net/2023/10/05/whats-new-in-rapid7-detection-response-q3-2023-in-review/</link>
		
		<dc:creator><![CDATA[Margaret Wei]]></dc:creator>
		<pubDate>Thu, 05 Oct 2023 15:49:48 +0000</pubDate>
				<category><![CDATA[Detection and Response]]></category>
		<category><![CDATA[DFIR]]></category>
		<category><![CDATA[InsightIDR]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=74cc37d4a37a598082ea50313dd3588c</guid>

					<description><![CDATA[Rapid7 has updated its Detection and Response offerings with advanced DFIR capabilities, custom detection rules, log search features, and more.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/10/GettyImages-1128503636.jpg" length="0" type="" />

			</item>
		<item>
		<title>Velociraptor 0.7.0 Release: Dig Deeper With Enhanced Client Search, Server Improvements and Expanded VQL Library</title>
		<link>https://noise.getoto.net/2023/08/31/velociraptor-0-7-0-release-dig-deeper-with-enhanced-client-search-server-improvements-and-expanded-vql-library/</link>
		
		<dc:creator><![CDATA[Mike Cohen]]></dc:creator>
		<pubDate>Thu, 31 Aug 2023 13:00:00 +0000</pubDate>
				<category><![CDATA[DFIR]]></category>
		<category><![CDATA[open source]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=1c2603df2c0df0b63a91ed567c3fd223</guid>

					<description><![CDATA[Rapid7 is thrilled to announce version 0.7.0 of Velociraptor is now LIVE and available for download.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/08/velociraptor-hero-copy-1.jpg" length="0" type="" />

			</item>
		<item>
		<title>Join us for VeloCON 2023: Digging Deeper Together!</title>
		<link>https://noise.getoto.net/2023/08/17/join-us-for-velocon-2023-digging-deeper-together/</link>
		
		<dc:creator><![CDATA[Carlos Canto]]></dc:creator>
		<pubDate>Thu, 17 Aug 2023 16:06:56 +0000</pubDate>
				<category><![CDATA[Detection and Response]]></category>
		<category><![CDATA[DFIR]]></category>
		<category><![CDATA[open source]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=1fee0deb6df7713c1813e984809bb274</guid>

					<description><![CDATA[Rapid7 is thrilled to announce that the 2nd annual VeloCON: Digging Deeper Together virtual summit will be held this September 13th at 9 am ET.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/08/velociraptor-hero-copy.jpg" length="0" type="" />

			</item>
		<item>
		<title>Velociraptor 0.6.9 Release: Digging Even Deeper with SMB Support, Azure Storage and Lockdown Server Mode</title>
		<link>https://noise.getoto.net/2023/06/07/velociraptor-0-6-9-release-digging-even-deeper-with-smb-support-azure-storage-and-lockdown-server-mode/</link>
		
		<dc:creator><![CDATA[Mike Cohen]]></dc:creator>
		<pubDate>Wed, 07 Jun 2023 20:17:13 +0000</pubDate>
				<category><![CDATA[DFIR]]></category>
		<category><![CDATA[Endpoint Security]]></category>
		<category><![CDATA[open source]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=805482acd4264c290d56b0e83c923138</guid>

					<description><![CDATA[Rapid7 is very excited to announce version 0.6.9 of Velociraptor is now LIVE and available for download.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/06/velociraptor-hero-copy.jpg" length="0" type="" />

			</item>
		<item>
		<title>The Velociraptor 2023 Annual Community Survey</title>
		<link>https://noise.getoto.net/2023/05/10/the-velociraptor-2023-annual-community-survey/</link>
		
		<dc:creator><![CDATA[Rapid7]]></dc:creator>
		<pubDate>Wed, 10 May 2023 14:00:27 +0000</pubDate>
				<category><![CDATA[Detection and Response]]></category>
		<category><![CDATA[DFIR]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=4ab96523c8b58a9ce444c32aad0cf3ea</guid>

					<description><![CDATA[Rapid7's Velociraptor team distributed our first community survey in early 2023. Here's what we learned!]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/05/velociraptor-hero-copy.jpg" length="0" type="" />

			</item>
		<item>
		<title>Automating Qakbot Detection at Scale With Velociraptor</title>
		<link>https://noise.getoto.net/2023/04/18/automating-qakbot-detection-at-scale-with-velociraptor/</link>
		
		<dc:creator><![CDATA[Rapid7]]></dc:creator>
		<pubDate>Tue, 18 Apr 2023 13:00:00 +0000</pubDate>
				<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=14a6211443c64e118fe049097888f4e8</guid>

					<description><![CDATA[This blog offers a practical methodology to extract configuration data from recent Qakbot samples.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/04/GettyImages-1367656936.jpg" length="0" type="" />

			</item>
		<item>
		<title>Automating Qakbot decode at scale</title>
		<link>https://noise.getoto.net/2023/04/14/automating-qakbot-decode-at-scale/</link>
		
		<dc:creator><![CDATA[Matthew Green]]></dc:creator>
		<pubDate>Fri, 14 Apr 2023 14:16:44 +0000</pubDate>
				<category><![CDATA[Malware]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=3ffe66f5cdd4b3254ab7d5c280f4c9a9</guid>

					<description><![CDATA[This is a technical post covering methodology to extract configuration data from recent Qakbot samples. I will provide background on Qakbot, walk through decode themes in an easy to visualize manner. I will then share a Velociraptor artifact to detect and automate the decode process at scale.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/04/qak.png" length="0" type="" />

			</item>
		<item>
		<title>Velociraptor Version 0.6.8 Available Now</title>
		<link>https://noise.getoto.net/2023/03/30/velociraptor-version-0-6-8-available-now/</link>
		
		<dc:creator><![CDATA[Carlos Canto]]></dc:creator>
		<pubDate>Thu, 30 Mar 2023 20:21:37 +0000</pubDate>
				<category><![CDATA[DFIR]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=7f4e22efbe49329c66d2095cfa90d895</guid>

					<description><![CDATA[Velociraptor update delivers new client-server communication protocol, VFS GUI, and performance upgrades]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2023/03/dfir-without-limits.jpg" length="0" type="" />

			</item>
		<item>
		<title>Velociraptor Version 0.6.7: Better Offline Collection, Encryption, and an Improved NTFS Parser Dig Deeper Than Ever</title>
		<link>https://noise.getoto.net/2022/12/02/velociraptor-version-0-6-7-better-offline-collection-encryption-and-an-improved-ntfs-parser-dig-deeper-than-ever/</link>
		
		<dc:creator><![CDATA[Mike Cohen]]></dc:creator>
		<pubDate>Fri, 02 Dec 2022 15:00:00 +0000</pubDate>
				<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[DFIR]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=28e6fc6dff034258c3c65aeb0ae15d29</guid>

					<description><![CDATA[Rapid7 is excited to announce the release of version 0.6.7 of Velociraptor – an advanced, open-source digital forensics and incident response (DFIR) tool.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2022/12/ThinkstockPhotos-177843422.jpg" length="0" type="" />

			</item>
		<item>
		<title>What&#8217;s New in InsightIDR: Q3 2022 in Review</title>
		<link>https://noise.getoto.net/2022/10/05/whats-new-in-insightidr-q3-2022-in-review/</link>
		
		<dc:creator><![CDATA[KJ McCann]]></dc:creator>
		<pubDate>Wed, 05 Oct 2022 14:00:00 +0000</pubDate>
				<category><![CDATA[Detection and Response]]></category>
		<category><![CDATA[InsightIDR]]></category>
		<category><![CDATA[Product Updates]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=9306ab8b8edab959c483b6684953fe2c</guid>

					<description><![CDATA[This Q3 2022 recap post takes a look at some of the latest investments we've made to InsightIDR to drive detection and response forward.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2022/10/insightidr-q3.jpg" length="0" type="" />

			</item>
		<item>
		<title>Velociraptor Version 0.6.6: Multi-Tenant Mode and More Let You Dig Deeper at Scale Like Never Before</title>
		<link>https://noise.getoto.net/2022/10/04/velociraptor-version-0-6-6-multi-tenant-mode-and-more-let-you-dig-deeper-at-scale-like-never-before/</link>
		
		<dc:creator><![CDATA[Carlos Canto]]></dc:creator>
		<pubDate>Tue, 04 Oct 2022 15:03:06 +0000</pubDate>
				<category><![CDATA[Detection and Response]]></category>
		<category><![CDATA[Product Updates]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=87abc1bb2ad78eb9d43b909cecc7492e</guid>

					<description><![CDATA[Rapid7 is excited to announce the release of version 0.6.6 of Velociraptor.]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2022/10/velociraptor-066.jpg" length="0" type="" />

			</item>
		<item>
		<title>VeloCON 2022: Digging Deeper Together!</title>
		<link>https://noise.getoto.net/2022/09/08/velocon-2022-digging-deeper-together/</link>
		
		<dc:creator><![CDATA[Carlos Canto]]></dc:creator>
		<pubDate>Thu, 08 Sep 2022 13:45:00 +0000</pubDate>
				<category><![CDATA[Detection and Response]]></category>
		<category><![CDATA[Events]]></category>
		<category><![CDATA[Velociraptor]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=e52749f42b6bd989258277500f7fc4e9</guid>

					<description><![CDATA[Have you ever wanted to share your passion and interest in Velociraptor with the rest of the community? VeloCON is your chance!]]></description>
		
		
		<enclosure url="https://blog.rapid7.com/content/images/2022/09/velocon-2022.jpg" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 29/313 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-09 23:27:53 by W3 Total Cache
-->