Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @danonit
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @danonit
-
Daniel Schell proslijedio/la je Tweet
A good tip do to every now and then, is this script: https://gist.github.com/api0cradle/95cd51fa1aa735d9331186f934df4df9 … Or use
@AirlockDigital free tool Application Whitelist Auditor: https://www.airlockdigital.com/application-whitelisting-auditor/ … Or go with AaronLocker:https://github.com/microsoft/AaronLocker …Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
VT a little baffled, unless failed certificate chain verification == Not Signed.pic.twitter.com/ys3NRyZ6t7
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Yep, managed to combine a few CVE-2020-0601 POC guides to sign a binary which unpatched Windows will determine to be valid. The CA does not need to be the MS ECC Authority. It's CRITICAL to patch this for Windows 10/2016/2019 OS relying on publisher trust for App Whitelisting.pic.twitter.com/g2aZIK8JhG
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Daniel Schell proslijedio/la je Tweet
I admit my feelings about application whitelisting/control have evolved a good bit over the past couple of years. Back then I saw it as quite valuable but also kinda flavor-of-the-moment-ish, too resource intensive, and too easy to circumvent. But reading a lot of work by… (1/2)
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Is this trying to imply that AV generally doesn't detect a loaded DLL if the parent process is trusted? Is this the case? https://freddiebarrsmith.com/trix/trix.html
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
#ApplicationWhitelisting is always missing from peoples christmas wish list. Maybe next year when the breaches outside are still frightenting...
https://twitter.com/ausernamedjosh/status/1209210697185419265 …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
All that work to drop a PE binary...https://twitter.com/cyber__sloth/status/1206525562153512960 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Daniel Schell proslijedio/la je Tweet
Large org security is like running a professional sports franchise: If you make bad enough choices you can spend all the money in the world and still get lousy results.https://twitter.com/Dinosn/status/1189081518800621568 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Oof - "Areas of particular concern include application whitelisting and user application hardening, with 90 percent and 94 percent of assessments in these respective areas falling into the maturity level zero or one category."https://www.itnews.com.au/news/nsw-govt-told-to-urgently-improve-cyber-security-resilience-535485 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Really satisfying to see what that we’ve been building actually causing problems for red teamers, enabling customers passing their Essential 8 audits on whitelisting as well as preventing actual real world attack. And they all said
#applicationwhitelisting was too hard.Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Great couple of days
@AirlockDigital in Canberra this week. Today started with a customer bragging their Airlock deployment defeated a paid pentest engagement using Cobalt Strike and had also prevented two real ransomware attacks that made it through their mail security gatewaysPrikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Astute analysis by
@anton_chuvakin on#ThreatIntel. "In these cases, the orgs would be better off focusing on security measures such as removing administrative rights and application whitelisting, and others that work effectively in near-complete absence of threat intelligence."Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Been listening to Sandworm, a fantastic book on the history of the industry. Highly recommended.https://www.audible.com.au/pd/Sandworm-Audiobook/0593146786 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Daniel Schell proslijedio/la je Tweet
The new Kali Undercover: for when you don't want tech-savvy people who may pass by to think you're running Kali, but some kind of Chinese pirated knockoff version of Windows instead.https://twitter.com/SwiftOnSecurity/status/1199513402701418497 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
New execution REST API endpoints will allow
@AirlockDigital customers to query endpoint exceptions for automation and orchestration. Our custom#Powershell test tool shown below performing a query.pic.twitter.com/scUiKACsGCHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Daniel Schell proslijedio/la je Tweet
U2F support in OpenSSH https://marc.info/?l=openssh-unix-dev&m=157259802529972&w=2 …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Daniel Schell proslijedio/la je Tweet
@AirlockDigital is excited to announce our attendance at@CrowdStrike#FalConUNITE19 next week. Be sure to drop past booth 19 and chat to the team about#applicationwhitelisting#zerotrustpic.twitter.com/D1MoeHtrgp
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Interesting legit, but unsigned, Microsoft binary of the day in Exchange. "Microsoft Exchange - For Testing Purposes Only (Built by ashk on ASHUTOSH-WIN8)." https://www.virustotal.com/gui/file/992dcfeb7fc28db1abe77a879ab2ce28709f789a7c6454f243b64e2ba83d3b7e/details …
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.