Network monitoring and security insights from Sycope

Read and watch news, best practices, tips and tricks from NDR world, prepared by experts and our engineers.

Learn more
This week top knowledge
Important datasheets and brochures
Check all resources
Filter:
Clear all filters
Blog
Passive vs active inventory — why network scanning alone is not enough
Learn how passive inventory differs from active scanning and why continuous traffic observation provides a more complete view of the network.
Marcin Kaźmierczak
07/08/2026
Read more >
Blog
The network never lies: catching attackers who already bypassed the firewall
See how flow-based network visibility helps detect lateral movement, C2 beaconing, and other signs of attackers operating inside the network after bypassing the firewall.
Paweł Drzewiecki
03/08/2026
Read more >
Blog
The hidden attacker in your OT network: the case for flow-based detection
Discover how flow-based detection helps uncover hidden threats in OT networks — without agents, active scanning or the risk of disrupting industrial processes.
Paweł Drzewiecki
27/07/2026
Read more >
Blog
From alert to evidence: reconstructing an attack with NetFlow
See how NetFlow helps security teams reconstruct the full attack path, trace lateral movement, identify command-and-control patterns and estimate data exfiltration using historical network evidence.
Paweł Drzewiecki
20/07/2026
Read more >
Blog
LinkSense architecture: why agent–server, Rust and SQLite
See what architectural decisions stand behind LinkSense — a lightweight, open-source synthetic monitoring tool based on the agent–server model, Rust and SQLite.
Marcin Kaźmierczak
14/07/2026
Read more >
Blog
How to analyze network incidents with PCAP?
In this article, we explain how to combine NetFlow, retrospective PCAP and packet analysis to identify suspicious communication faster, reconstruct the course of incidents and document response activities more effectively.
Paweł Drzewiecki
07/07/2026
Read more >
Video
Webinar: An attack’s in progress, can your team see it?
During this webinar, we will walk through real-world attack scenarios and show what was visible in the network — before, during and after the incident. You will learn how timing, volume, destinations, session patterns, NetFlow retention and packet access can help detect what traditional tools may miss.
Maciej Wilamowski
03/07/2026
Watch the video >
Video
Webinar: Threats don’t always make noise
Learn how to uncover silent attacks hidden in seemingly normal network traffic. Discover how traffic analytics, observability, behavioral detection and data correlation can reveal low-and-slow activity, lateral movement and unusual communications—helping security and network teams respond faster.
Radu Dumitriu
03/07/2026
Watch the video >
Video
Webinar: NIS2 in Romania: How to achieve visibility and compliance?
As NIS2 becomes a key priority for Romanian organizations, visibility and compliance are essential. In this session, we show how to turn regulatory requirements into practical security measures, improve monitoring, and gain greater operational clarity.
Radu Dumitriu
03/07/2026
Watch the video >
Video
Sycope System Guide, part 3: Raw data
Learn how to use Raw Data in Sycope for detailed network traffic analysis and forensic investigation. This video covers data streams, filtering, table customization, Advanced View, graph controls and exporting investigation results.
Marcin Kaźmierczak
03/07/2026
Watch the video >
Video
Sycope System Guide, part 2: Home & dashboards
In this episode of the Sycope Guide series, we take a closer look at the Home & Dashboards section and how it supports everyday work with network monitoring and security analytics. The video walks through the main interface, presenting how information is structured and how dashboards can be used to provide a clear, real-time overview of key metrics and events.
Marcin Kaźmierczak
03/07/2026
Watch the video >
Blog
LinkSense: a lightweight, open-source synthetic monitoring tool from the Sycope team
See how LinkSense helps monitor the availability, performance and health of services in distributed environments — without unnecessary complexity or vendor lock-in.
Marcin Kaźmierczak
01/07/2026
Read more >