Lost my phone at the office and spent 30 minutes turning the place over. Find My was disabled by MDM.
Out of ideas, I asked Claude how I could find it. It suggested tracking the Bluetooth signal strength, then wrote me a meter in about a minute.
I walked around watching the number climb. Found it.
Apparently you can just make the tool you need now.
Code: https://t.co/fmnISzHfZ2
On Saturday, I sat in a crowded ballroom at Caesar's Forum in Vegas and watched @sickcodes jailbreak a John Deere tractor's control unit live, before an audience of cheering @Defcon 30 attendees (and, possibly, a few undercover Deere execs, who often attend Sickcodes's talks). 1/
#TrickBot (rob142) and #Emotet (epoch5) using the same malware distribution server 🕵️👀
mshta -> html -> PowerShell -> DLL 🔥
👉 https://t.co/aNpv2i9oKP
TrickBot XLSM (rob142):
📄 https://t.co/a3b0gcfjPc
Emotet XLSM (epoch5):
📄 https://t.co/sFcjCdU3xi
Ragnar Locker ransomware group took screenshots of their targets Cybersecurity Incident Response meeting mid-breach.
* Image censored to comply with Twitters Terms of Service
* Watermark is Ragnar Locker's - not ours. We did not apply it.
I wanted a way to monitor trending CVEs on Twitter
So I built https://t.co/YiHEgCQ2y9
- data comes from Twitter + NIST NVD APIs
- back-end: Python, Flask, PostgreSQL, and Redis
- front-end: React + Bootstrap
It's a quick MVP, but let me know your thoughts and feedback...
I am trying to map out the anatomy of a ransomware attack. Are there any glaring steps or tools I am missing from this diagram (I know I didn't get all the tools ransomware groups use, but did I miss any big ones)?
A sneak peek of #Sysmon for Linux 💥
Thank you @kevsecurity for your hard work and for sharing your research @eBPFsummit ! #ebpf#eBPFSummit
🚨 Release scheduled for early October 2021 🚨
Looking forward to it 🍻 #MSTIC R&D team 😎
[Blog📚] A Primer On Event Tracing For Windows (ETW) https://t.co/rqhO3npxUT
In this blog i cover the following topics
- Introduction to ETW
- Provider Manifest Structure
- Tools and Techniques to Interact With ETW
#infosec#blueteam#windows
Hey, so I want to talk about something that riles up or disheartens a lot of jr cybersecurity people and raises questions about gatekeeping, my perspective, and why I don't think it's as catastrophic as it looks from the outside. It has to do with experience required to do IR.