A Cybersecurity Context

Security Operations

Security Operations encompasses the processes, technologies, and personnel responsible for monitoring and responding to security incidents. Security Operations Centres (SOCs) play a central role in this domain, leveraging advanced tools and methodologies to detect, analyse, and mitigate potential cyber threats in real-time. Security Operations involves continuous monitoring of networks, systems, and applications, as well as incident response activities to address and neutralise security incidents promptly.

Slipstream Cyber, part of Interactive, is a specialist firm providing comprehensive, 24/7 cyber defence solutions. Its services include an Australian-based Security Operations Centre (SOC), managed detection and response, and penetration testing.

Founded by a former industry Chief Information Security Officer (CISO), our mission is to build a business to meet the needs of other CISOs. Our core principles are robust process, investment in people, enablement with world-class technology, and a focus on flexibility.

Slipstream Cyber is a business of Interactive which allows us to offer multi-disciplinary perspectives on the challenge our customers face.

Operating a true 24×7, sovereign Security Operations Centre, we deliver services to customers across Australia and internationally.

Curly COMrades: Evasion and Persistence via Hidden Hyper-V Virtual Machines

Bitdefender first documented the Curly COMrades threat actor, operating to support Russian interests in geopolitical hotbeds, in August 2025. Since that initial discovery, subsequent forensics and incident response efforts have revealed critical new tools and techniques. Valuable support was provided by the Georgian CERT, whose collaboration significantly advanced the investigation. It alerted us to a detected sample communicating with a compromised site we were monitoring, enabling a joint analysis. The Georgian CERT was then instrumental in evidence acquisition and conducting a forensic analysis of the compromised site itself, which the attackers leveraged as a proxy to their actual infrastructure. The most...

Deep Dive Articles

No results found.

In The News

No results found.