Tweets
- Tweets, current page.
- Tweets & replies
- Media
You blocked @Greg_Lucand
Are you sure you want to view these Tweets? Viewing Tweets won't unblock @Greg_Lucand
-
Grégory LUCAND Retweeted
AppLocker case study blogposts so far. More to come! AppLocker study 1 - https://oddvar.moe/2017/12/13/applocker-case-study-how-insecure-is-it-really-part-1/ … AppLocker study 2 - https://oddvar.moe/2017/12/21/applocker-case-study-how-insecure-is-it-really-part-2/ … Hardening based on study 1 - https://oddvar.moe/2017/12/13/harden-windows-with-applocker-based-on-case-study-part-1/ … Hardening based on study 2 - https://oddvar.moe/2017/12/21/harden-windows-with-applocker-based-on-case-study-part-2/ …
#AppLocker#FeedBackWelcomepic.twitter.com/XVnX69CpAWThanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
#VendrediLecture L'application du moindre privilège est indispensable pour limiter la surface d’attaque d'un#système et sa vulnérabilité. Retrouvez le nouveau guide de recommandation pour la mise en place de#Cloisonnement système
https://www.ssi.gouv.fr/guide/recommandations-pour-la-mise-en-place-de-cloisonnement-systeme/ …pic.twitter.com/3J0vfmsIkR
Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
It's official, I'll present with
@gentilkiwi as guest the new DCShadow attack (how to transform a workstation into a DC) at@BlueHatIL http://www.bluehatil.com/abstracts.html Wednesday, Jan 24 | 12:45-13:30 PM, Tel AvivThanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
Two novel studies by our researchers on enhancing redteaming tools and
#cyberdefence exercises, 1st time presented this year at#MILCOM conference@AFCEA Both proposals have been already tested@ccdcoe exerciseshttps://ccdcoe.org/new-research-red-teaming-technical-capabilities-and-cyber-defence-exercises.html …Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
Sysinternals Sysmon suspicious activity guidehttps://blogs.technet.microsoft.com/motiba/2017/12/07/sysinternals-sysmon-suspicious-activity-guide/ …
Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
From the "technical blog posts that I wish would have existed when I was a sysadmin" department, new deep-dive post on AskDS:https://blogs.technet.microsoft.com/askds/2017/12/04/ese-deep-dive-part-1-the-anatomy-of-an-ese-database/ …
Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
LogonTracer: Investigate malicious Windows logon by visualizing and analyzing Windows event log https://github.com/JPCERTCC/LogonTracer …
#DFIR#blueteampic.twitter.com/QAytdJ1qpL
Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
CALDERA has been released! https://github.com/mitre/caldera We will be presenting the work at
#BHEU next week.#adversaryemulation#mitrecorpThanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
#GuerreÉlec interception localisation traduction analyse diffusion
Le renseignement a rôle crucial dans la guerre. Retour sur avec le #44RTpic.twitter.com/EmIbqwvLLgDe l'émetteur au terrain en passant par nos spécialistes transmissionsLa recherche, l’exploitation et la diffusion du renseignement sont des arts difficiles. Quelle que soit l’avancée de ses moyens, il repose sur une activité humaine exigeante en compétences & qualités.Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
Added a new blog post showing a few alternative methods of grabbing SYSTEM access, hopefully useful if "getsystem" isn't an option https://blog.xpnsec.com/becoming-system/ …pic.twitter.com/Rg6GeX1RWX
Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
On the Full Language Mode, you can do whatever you want. Here is just another example, which kills Script Block Logging. No protection works perfect, so know attackers as much as possible (and defense options like the Constrained Language Mode)https://gist.github.com/tandasat/e595c77c52e13aaee60e1e8b65d2ba32 …
Show this threadThanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
Défis n°8 est paru. La revue du département Intelligence et sécurité économique de
@inhesj est consacrée pour cette édition à l’entreprise à l’heure de l’intelligence artificielle. Elle est disponible gratuitement en téléchargement: https://inhesj.fr/publications/defis/lentreprise-lheure-de-lintelligence-artificielle-entre-promesses-et-nouveaux …pic.twitter.com/Yq20wqHr2L
Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
The slide deck from my presentation at COUNTERMEASURE today, where I talked about a set of analytical models I've created that you can use to reduce the uncertainty when deciding on response strategies to "APT intrusions".
#infosec#cybersecurity#dfirhttps://www.slideshare.net/FrodeHommedal/taking-the-attacker-eviction-red-pill …Show this threadThanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
Intro to
#GPS spoofing: Attack, detection & Mitigation https://spectrum.ieee.org/telecom/security/protecting-gps-from-spoofers-is-critical-to-the-future-of-navigation …pic.twitter.com/MtPcA2eZS7
Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
Great post on DFIR considerations: "Chasing Adversaries with Autoruns – evading techniques and countermeasures"https://blogs.technet.microsoft.com/motiba/2017/11/04/chasing-adversaries-with-autoruns-evading-techniques-and-countermeasures/ …
Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
A quick review of all the
@MITREattack Techniques. I can quickly map 32 techniques killed by deploying Whitelisting. https://gist.github.com/subTee/4229848cf79cc09cb405cfb490e7735a …Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
What's coming in the next version of the free ILSpy decompiler for .NET apps (
#DFIR#malware#infosec)https://channel9.msdn.com/coding4fun/blog/No-Source-No-PDB-No-Problem-ILSpy …Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
TA17-293A: Advanced Persistent Threat Activity Targeting Energy and Other Critical Infrastructure Sectors http://bit.ly/2ywG5Sx pic.twitter.com/Kzi2ALOfA1
Thanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
Canadian SIGINT agency
@cse_cst is releasing its Automated Malware Analysis Framework https://bitbucket.org/cse-assemblyline/assemblyline …Show this threadThanks. Twitter will use this to make your timeline better. Undo -
Grégory LUCAND Retweeted
Discover any "ACL Hidden" objects used for persistency https://cloudblogs.microsoft.com/microsoftsecure/2017/10/11/what-am-i-missing-how-to-see-the-users-youre-denied-from-seeing/ … cc
@_wald0@harmj0yThanks. Twitter will use this to make your timeline better. Undo
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.