Press ESC to close or Enter to search

Home
About Us
Services
Pricing
Tools
Resources
Contact
Get Started
Live Security Feed
Your IPDetecting...
NCSCUK organisations urged to strengthen cyber defences ALERTPhishing attacks targeting Microsoft 365 users on the rise CISACritical vulnerabilities identified in popular software NEWSRansomware groups increasingly targeting SME businesses NCSCNew guidance released for securing remote workers ALERTBusiness email compromise attacks cost UK firms millions CISAZero-day exploits require immediate patching attention NEWSAI-powered threats becoming more sophisticated in 2025 NCSCUK organisations urged to strengthen cyber defences ALERTPhishing attacks targeting Microsoft 365 users on the rise CISACritical vulnerabilities identified in popular software NEWSRansomware groups increasingly targeting SME businesses NCSCNew guidance released for securing remote workers ALERTBusiness email compromise attacks cost UK firms millions CISAZero-day exploits require immediate patching attention NEWSAI-powered threats becoming more sophisticated in 2025
View Dashboard

Indicators of Compromise

Incident Response

Observable evidence that a system has been breached—IPs, file hashes, domain names, patterns.

Indicators of Compromise (IOCs) are forensic artefacts indicating systems have been compromised—malicious IP addresses, file hashes, domain names, registry keys, or network patterns. During incidents, responders identify IOCs to scope compromise and detect affected systems. IOCs are shared with the security community to help others detect the same threats. IOC feeds enable automated detection in SIEM and security tools.

Why It Matters

The DSC Perspective:

IOCs help determine incident scope and detect compromise across your environment. Collect IOCs during investigations and use them to search for other affected systems. Share IOCs responsibly to help others.

Related Terms