Tweetovi
- Tweetovi, trenutna stranica.
- Tweetovi i odgovori
- Medijski sadržaj
Blokirali ste korisnika/cu @wesleyraptor
Jeste li sigurni da želite vidjeti te tweetove? Time nećete deblokirati korisnika/cu @wesleyraptor
-
Prikvačeni tweet
Officially releasing StreamingPhish, a Python-based utility that uses supervised machine learning to rapidly detect phishing domains from the Certificate Transparency log network. Available on Github here: https://github.com/wesleyraptor/streamingphish …pic.twitter.com/GkJBPogttr
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
I think
@grecs wrote the best summary of my “monitor first” philosophy, which I believe are the best words ever written by@schneierblog back in 2001.https://www.novainfosec.com/2015/06/25/monitor-first-the-origin/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
The Stress and Joy of Security Jobs. A thread. A few months ago there was this whole thing about the stress of security roles, CISOs self-medicating, and a whole range of burn-out talk. Ok, yes, security is a tough job. A very tough job. 1/14
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
Stop measuring the value of Threat Detection by how many alerts are generated and how many incidents they catch. A mouse trap won't catch mice if there are no mice to catch. But you need a mouse trap to know if there are mice. Waiting until you find poop everywhere is too late.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je TweetHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
-
Wes Connell proslijedio/la je Tweet
Security Monitoring Wisdom: Realtime alerts do only make sense if you plan to also react in realtime. (e.g. fw block, disconnect systems) Otherwise the cost is too high. Better schedule a query that runs every 5 mins on the log data of the last 5 mins.
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
Wish I had found that earlier, very good primer for classifying phishing domains from
@wesleyraptor (2018), employing@calidogsec certstream,@x0rz phishing_catcher and with shoutouts to a few other folks on Twitter:https://www.youtube.com/watch?v=s5g7ij5EKoA …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
Please RT for visibility. Anyone doing 3rd party/vendor security work ever done a retro on vendors that you passed through review successfully and then discovered had suffered breaches? Curious as to numbers/rate correlated with efficacy of 3rd party risk management program.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
Awhile ago
@cnoanalysis and I wrote a paper on the four types of threat detection. I see discussions of IOCs and TTPs and want to note: all four types of threat detection have value. Some are better in use cases like detection but better != all use-cases. https://dragos.com/wp-content/uploads/The_Four_Types-of_Threat_Detection.pdf …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
threat detection planning (the process of planning the tasks needed to properly operationalize threat intelligence) is hard and most orgs barely think about it. if i had to do this from scratch, here’s how i might approach it.
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
Sysmon with DNS query logging and original file name reporting will publish on Tuesday.pic.twitter.com/0nTKJahjSe
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
Soooooo our entire team got laid off with no notice, on a monday- and they didn't even reach out to let us know it was coming. So there are some great people today looking for pentesting work. I'm among them, and looking to work with a skilled team. Retweets are appreciated.
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
If you had a breach today, what data source would you want for the investigation that you don't have now? Follow up question, what's stopping you from adding it now?
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
GDPR took away email whois records which challenges investigation but why not: 1) provide one anonymized id per acct to allow correlation 2) implement transparency logs similar to cert stream 3) require SLA for abuse reports & publish common reporting api
@nullcookies@SteveD3Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
New
#security#blog: Learn how@Lookout Phishing and Content Protection &@PhishingAi help defend against https phishing attacks: https://blog.lookout.com/mobile-phishing-protection-https-phishing-attacks …@dyngnosis#Phishing#PostPerimeter#cybersecurity#MobileSecuritypic.twitter.com/YVUQDERac7
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
Just heard about a customer service exploit where the person called up multiple times and corrected a single character "misspelling" until the entire account was in his name.
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
Security Data Science Learning Resources https://medium.com/@jason_trost/security-data-science-learning-resources-8f7586995040 … << feedback welcome
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
Sysmon update coming soon with DNS query logging and executable's original file name version field in process and image log entries...
Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
my presentation from
@BSidesSF was uploaded this week, check it out if you're interested in detecting adversaries via large scale file analysishttps://youtu.be/j-wjXUs8k1MPrikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
Supercharged certificate monitoring with Faust
#dfir#ThreatHunting#infosechttps://www.d3vzer0.com/supercharged-certificate-monitoring-with-faust/ …Hvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi -
Wes Connell proslijedio/la je Tweet
v3 of the strelka gRPC beta was released this week, anticipating one more beta round before it takes over as master. grab it here if you’re interested: https://github.com/target/strelka/tree/experimental/grpc …
Prikaži ovu nitHvala. Twitter će to iskoristiti za poboljšanje vaše vremenske crte. PoništiPoništi
Čini se da učitavanje traje već neko vrijeme.
Twitter je možda preopterećen ili ima kratkotrajnih poteškoća u radu. Pokušajte ponovno ili potražite dodatne informacije u odjeljku Status Twittera.