DEV Community

# incidentresponse

The process of responding to and managing security incidents and breaches.

Posts

👋 Sign in for the ability to sort posts by relevant, latest, or top.
Protecting GitHub from Supply-Chain Malware: Prevention, Cleanup, and Recovery

Protecting GitHub from Supply-Chain Malware: Prevention, Cleanup, and Recovery

Comments
12 min read
How to investigate suspicious SSH logins without giving AI a shell

How to investigate suspicious SSH logins without giving AI a shell

Comments
4 min read
How I would use local read-only AI for first-pass server incident response

How I would use local read-only AI for first-pass server incident response

Comments
2 min read
Turning first-pass host evidence into a DFIR handoff report

Turning first-pass host evidence into a DFIR handoff report

Comments
4 min read
Two Retailers, One Attack: What Really Decides Who Survives a Breach

Two Retailers, One Attack: What Really Decides Who Survives a Breach

Comments
7 min read
How to triage Java memory-shell clues without unsafe default heap dumps

How to triage Java memory-shell clues without unsafe default heap dumps

Comments
3 min read
How to triage a suspected WebShell without giving AI a shell

How to triage a suspected WebShell without giving AI a shell

Comments
3 min read
What safety boundary should an AI incident investigation tool have?

What safety boundary should an AI incident investigation tool have?

Comments
3 min read
How to investigate a suspicious IP on a Linux server with read-only evidence

How to investigate a suspicious IP on a Linux server with read-only evidence

Comments
3 min read
The four-minute gap: what the Nando's machete incident reveals about incident response systems (not just training)

The four-minute gap: what the Nando's machete incident reveals about incident response systems (not just training)

Comments
4 min read
How DevOps Engineers Can Use AI to Triage Production Incidents Faster

How DevOps Engineers Can Use AI to Triage Production Incidents Faster

Comments 1
5 min read
My Server's Crisis Moment: An Alert During Family Dinner

My Server's Crisis Moment: An Alert During Family Dinner

Comments
4 min read
My Own VPS Crisis: That Moment of Panic During a Client Meeting

My Own VPS Crisis: That Moment of Panic During a Client Meeting

Comments
6 min read
IRAS: Building a Production-Grade Autonomous Incident Response Agent

IRAS: Building a Production-Grade Autonomous Incident Response Agent

Comments
4 min read
The Config Rule Audit Your IR Playbook Is Missing

The Config Rule Audit Your IR Playbook Is Missing

2
Comments
3 min read
👋 Sign in for the ability to sort posts by relevant, latest, or top.