-
I've just released my
@MITREattack datasource assessment tool https://github.com/olafhartong/ATTACKdatamap … also a blog post detailing it a bit more here https://medium.com/@olafhartong/assess-your-data-potential-with-att-ck-datamap-f44884cfed11 …#DIFR#Blueteam#infosecpic.twitter.com/m0yo1Swwt9
-
Hey whitehats and blackhats ... don't worry, we have you covered in
#Azure too. https://github.com/BlueTeamToolkit/sentinel-attack/tree/master/detections … 119 freshly baked Sentinel rules to nab you in the cloud

#DIFR#threathunting#blueteamtips#toolspic.twitter.com/2DhM34o78T -
-
Somebody bout to be my victim!

#Itzzup!#DIFR
#TC48
pic.twitter.com/VFKV68FvNY
-
Hit my first homerun in coed today and it was a grand slam

#DIFR -
localrecon.cmd: small utility written in batch for whoever is working on their
@offsectraining#PWK/#OSCP lab or for whoever just needs to get a quick insight into a machine for#DIFR purposes. Available at https://github.com/bitsadmin/miscellaneous …pic.twitter.com/1xnOqKijQQ
-
@CarbonBlack_Inc can you add something like parent_cmdline. this is one example it could have been easily detected if we look for DcomLaunch in the parent process command-line read here for more details https://www.cybereason.com/blog/dcom-lateral-movement-techniques …. Sysmon has this.#DIFR -
@LAprincibaal and stop closing the bathrooms
#DIFR -
Lovely to connect with teams from
@Spiritof2012@Debolye &@UnLtd - sharing learning from our#DIFR partnership, Massive thanks to our#standout young#entrepreneurs for sharing their journeys so far#TowerHamlets#eastLondon#socent pic.twitter.com/n2gLoid1Cr
-
Hey
@EricRZimmerman@robtlee and@sansforensics@SANSInstitute I just passed the@CertifyGIAC GCFA exam.#sans508#DIFRPrikaži ovu nit -
Do you have a design discipline? Submit your design-related articles to https://www.designerviews.org/ pic.twitter.com/tN0TcT7GGz
#DIFR
-
Cool cooler! Big thanks to
@rodentologist for his efforts getting#DryIce for#rats approved#DIFR is our only method for soil burrows. pic.twitter.com/DjFDwxe0Jl
-
The one on the right will be detected by registryevent as it has the attached. will look at createremotethread and see how to optimize it.
#threathunting#difr pic.twitter.com/ANW1fhv5sz
-
At 6:45, don’t miss the dedication ceremony of our new flagpole in honor of Reece Ferrara
#DIFR #13#onceatuskeralwaysatuskerpic.twitter.com/C8uaK04sdx
Prikaži ovu nit -
I've managed it :) Just want to assess what is worth investing in :) All
#difr software seems so bloated now.....I can do the thinking I just need assistance to know where to look.............. -
@bettersafetynet released an awesome PowerShell cmdlet to pause a process. There are some REALLY cool use cases this can solve, particularly for incident response and blue teaming.#infosec#difr https://github.com/besimorhino/Pause-Process … -
So many new & updates features are coming to our Autumn release, it’s crazy! Building The File Threat Intelligence Platform. Stay turned. See https://www.vulnex.com/en/binsecsweeper.html … & info@vulnex.com
#ThreatHunting#threatintel#DIFR#BigData#infosec#CyberSecurity#ThreatIntelligencepic.twitter.com/w53QldLthD
-
Celebrating the life of Reece Ferrara. Flagpole dedication
#onceatuskeralwaysatusker #13#DIFR pic.twitter.com/KtyUImPhpB
-
Great turnout
@IntellectPt for our#ThreatHunting with the@elastic Stack#Meetup. Looking forward to our full 2-day class July 25 & 26 next week! Sign up now: https://www.intellectualpoint.com/product/threat-hunting-with-elk-training-workshop …#cybersecurity#infosec#difr#hackerpic.twitter.com/b5SySPUgUr
-
[Analysis]
#AgentSmith has infected over 25M#Android devices. Big code base with#Smali /#BackSmali based code injector! Multiple 1-days. Main payload: show ads! Analysis Report: https://buff.ly/30wvB02 Source Code Report: https://buff.ly/2LhW4La#malware#difr#infosecpic.twitter.com/KukCazMObY
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.