Hack for good, not evil or greed. Seek to understand, not just to solve. Co-founder of River Security (@rivsec), Principal SANS Instructor. Doing my own thing..
I’m an Incident Responder on the AWS Customer Incident Response Team (CIRT). And I get asked a lot of questions, like:
“Where do I even start with incident response in the cloud?”
Here’s a beginner-friendly thread on AWS IR tips — with a few lessons I learned 🧵👇
Just built an MCP for Ghidra.
Now basically any LLM (Claude, Gemini, local...) can Reverse Engineer malware for you. With the right prompting, it automates a *ton* of tedious tasks.
One-shot markups of entire binaries with just a click.
Open source, on Github now.
We're looking for passionate cybersecurity professionals, both junior and senior roles, to join our remote pentesting team. There is a hacking challenge below... Does this sound enticing?Message me.
http://209.38.109.251/ (Reach out if you need hints) 💪
In this podcast I am discussing things like how peneration testing is changing, modern penetration testing methodlogy, and more. https://t.co/ic4mf5TLDp
🚀 A new era of #PenTesting is here! Move beyond static #Assessments and step into real-time, continuous security validation. @ChrisADale shares how #OffensiveSOCs are changing the game.
Read the blog → https://t.co/pllOckNp8U
🔎 What’s hiding in your #AttackSurface?
#PenTesting alone isn’t enough to uncover hidden vulnerabilities. Join @ChrisADale as he explores how Continuous Pen Testing & #AttackSurfaceManagement can bridge the gap in security operations.
→ Register now: https://t.co/xkn0HY9qkA
🚀 The future of finance is resilient. #DORA & #TIBER-EU are driving change in how financial institutions prepare for evolving #Cybersecurity threats. Prepare for 2025, get actionable insights now. @sansinstitute
Read the blog → https://t.co/WXVpVrKy1q
The single best quality of life improvement to PowerShell; turns tab completition into linux style tab completion `Set-PSReadlineKeyHandler -Key Tab -Function Complete` #powershell
🔔 Reminder! Join SANS Principal Instructor @ChrisADale today at 11 a.m. BST for an in-depth look at #NIS2, #DORA, and #TiberEU frameworks, and learn how to strengthen your IT security strategy.
📝 Don’t miss out—register here → https://t.co/f91GdgguIn
#SANSTraining
The Web Application Hacker's Handbook is considered a foundational resource for web hackers. There wont however be a third edition, instead they have built https://t.co/p31yKvaCEQ . Thanks @PortSwigger
If GMail is being used as a Command and Control channel, are you supposed to block GMail next? When faced with adversaries willing to implement stealth, different tactics are necessary, such as basing our selves on user and entity behavioral monitoring.
https://t.co/QzXEXWrmbN
This technique had me call 10 different companies in Norway in the span of just a few hours of hunting.
Check out the tool and technique for finding vulnerabilities in this YouTube video I recorded last week: https://t.co/kZf9fcOk34