Sherri Davidoff

@SherriDavidoff

Cybersecurity professional, CEO of LMG Security, author of "Network Forensics" and upcoming book on "Data Breaches." Most important role: mom.

Missoula, MT
Geregistreerd in oktober 2011

Tweets

Je hebt @SherriDavidoff geblokkeerd

Weet je zeker dat je deze Tweets wilt bekijken? @SherriDavidoff wordt niet gedeblokkeerd door Tweets te bekijken.

  1. heeft geretweet
    28 jun.

    Very quick writeup on the Activities API discovered by and Nothing new, but hopefully the walk through helps others:

    Ongedaan maken
  2. heeft geretweet
    29 jun.

    The kind of functionality we really shouldn’t be keeping secret. Or paying extra for. Security is hard enough.

    Ongedaan maken
  3. 28 jun.

    Great to see taking a leadership role in this conversation about 0-day forensic artifact disclosure. There has been excellent discussion on the lists. Thanks for everything you do and to bring our community together.

    Ongedaan maken
  4. heeft geretweet
    28 jun.
    Als antwoord op en

    We have used it with lots of success. Used in conjunction with the various Audit logs, it can provide a very clear picture into the attacker activity that extends beyond wire transfer scams. I would caution you about drawing conclusions from the data without testing.

    Ongedaan maken
  5. heeft geretweet
    20 jun.

    Now that the Mailbox Activity API is out in the open, can explain why the Audit Log misses authentications that are recorded in the Activity "log"? Failing to record authentications is a pretty big deal.

    Ongedaan maken
  6. heeft geretweet
    27 jun.

    Cryptocurrency, Cybercrime, and Cocktails is the place to be! Thanks to , Badlander, and Catalyst for the tasty treats!

    Ongedaan maken
  7. heeft geretweet
    27 jun.

    Thanks and for bringing in for a great happy hour and learning session.

    Ongedaan maken
  8. heeft geretweet
    22 jun.

    Black Hat 2018 is coming! Please join LMG Security and Sherri Davidoff for a thrilling class: "Data Breaches: Detection, Investigation and Response" 2 sessions - August 4-5 & August 6-7 in Las Vegas

    Ongedaan maken
  9. 27 jun.

    Big news in Office 365 email hacking cases this week! A secret utility to access a trove of Microsoft activity logs has been exposed. This data can help investigators "rule out" a potential data breach. Check out LMG's blog for more details:

    Ongedaan maken
  10. heeft geretweet
    19 jun.
    Als antwoord op

    Thanks Sherri. The shout out goes to the entire Services team. With the release of the python script we hope to empower investigators in providing help to the countless victim organizations.

    Ongedaan maken
  11. 19 jun.

    Crowdstrike drops the mic, revealing details about the rumored "forensics 0-day" for O365 BEC cases. Nice work . Thanks for sharing with the community.

    Ongedaan maken
  12. heeft geretweet
    14 jun.

    Hahaha, possibly the best sign I've seen in a while (cc )

    Ongedaan maken
  13. heeft geretweet
    16 mei
    Ongedaan maken
  14. heeft geretweet
    15 mei

    Karen continues her 2018 world tour! Today she’s teaching digital forensics in !

    Ongedaan maken
  15. heeft geretweet
    15 mei

    Time is flying by and seats are filling up fast for our brand new training "DATA BREACHES: DETECTION, INVESTIGATION AND RESPONSE" with ! Register soon and save some money!

    Ongedaan maken
  16. heeft geretweet
    14 mei

    RE: PGP. It is still safe, don't use shitty 3rd party plugins, don't auto de-crypt. Don't use HTML mail for secure mail. All standard operating procedure, if you've been paying attention the last 20+ years.

    Ongedaan maken
  17. 14 mei

    Look who was sitting in my seat today! Nice to see a familiar face. Who needs in-flight movies when you could spend three hours debugging Linux errors?

    Ongedaan maken
  18. heeft geretweet
    4 mei

    This is great, thanks for sharing . FortiMail protects a whopping $99.86% of mal emails. Don't fall into the spam trap!

    Ongedaan maken
  19. heeft geretweet
    3 mei

    Both GitHub and Twitter use bcrypt to hash passwords. Within two days, both sites disclose they were bitten an almost identical password logging bug. It sure would be helpful to know if they use the same software and if so, what it is.

    Deze collectie tonen
    Ongedaan maken
  20. 4 mei

    Happy 40th birthday, spam! On May 3, 1978, the first spam email campaign generated $13 million dollars in revenue. Who knew that forty years later, the world would receive over 14.5 BILLION spam emails per day?

    Ongedaan maken

Het laden lijkt wat langer te duren.

Twitter is mogelijk overbelast of ondervindt een tijdelijke onderbreking. Probeer het opnieuw of bekijk de Twitter-status voor meer informatie.

    Je bent misschien ook geïnteresseerd in

    ·