Our CTO @MalwareJake speaks with @lisavaas at @threatpost about the recent cyberattack effecting the data of 80K fertility patients.
https://t.co/xhoqYq4A5V
Check out what @MalwareJake had to say about joining @BreachQuest and our mission to help companies in "preparing for the inevitable."
https://t.co/J5oSH5Ok5o
If you are at @Blueteamcon, and you rush, you can hear our founder @MalwareJake Speak on ""Stop talking nerdy to me: translating the value proposition of the blue team to the C-Suite"
Hey, if you are at @Blueteamcon, at 5 PM check out our founder @MalwareJake. He is speaking. "Stop talking nerdy to me: translating the value proposition of the blue team to the C-Suite."
Thanks @DarkReading for covering our recent 4.4M$ seed financing from Slow Ventures and the founders of Lookout and Tinder. We are so excited about building Priori - the Incident Response Platform of tomorrow. https://t.co/ZbwqrvyY7G
Big news! Announcing our $4.4m seed round to speed the development of the Priori Platform and enable us to grow our incident response. Partnering with Slow Ventures, Lookout's Kevin Mahaffey, and Tinder's Sean Rad and @justinmateen https://t.co/UQzsV0DsXw https://t.co/SrLiAWnnfx
7/
Seeing the Forest Through the Trees โ Foundations of Event Log Analysis, by Jake WIlliams (@MalwareJake)
Login events, service creation, and process execution. Task scheduler logs for lateral movement/privs escalation. New event logs available in Windows 10.
We now know that employees at Kaseya warned of multiple security risks.
It doesn't have to be this way. BreachQuest's CISO @ScrumWhat weighs in. https://t.co/JszGDjVh5c @scmagazine
If you work in incident response today, what's thing do you have the hardest time tracking during an incident? Where are your challenges keeping stakeholders in sync?
I'm trying to get a pulse on the state of the field outside of my bubble. Please RT for reach.
We take care of our people!
If you're a DFIR guru and looking for a place to call home where you get to work with some of the best people in the world (admittedly we're biased) check out our careers page!
https://t.co/f38x7jtK4f
We have a client that is looking for a CISO, preferably someone that is experienced with the medical technology industry, HIPAA, CCPA, and ISO27001.
You will be a direct report to the Chief Legal Officer who is an amazing person. Building the program from almost nothing.
How do you know that your #SIEM will alert you about threats when they inevitably appear?
In Thursday's livestream, Blumira's @InfoSystir and @EricaMix, along with @ScrumWhat, CISO at @BreachQuest, will go over 5 easy ways to test your SIEM. Join us: https://t.co/2trSIF36jf
I'm looking for a DFIR Team Lead to come work with me @BreachQuest.
Must believe in servant leadership, be cool under pressure, and want to develop a strong, diverse, global team. (+tech duh๐)
If you're interested please apply here: https://t.co/enkrSeZMVj
RT's appreciated!
Said: 1 in 4 employees surveyed still have access to accounts from past employers
Unsaid: the other three didn't have any third party accounts at the past employer
You can't do security without a joiner/mover/leaver program. Period.
https://t.co/bTb5yi8u9F
So @KaseyaCorp is having a "service interruption." In reality, they've almost certainly been hit by ransomware.
We're seeing multiple customers who use Kaseya hit with Sodinokibi ransomware. If you get to celebrate this weekend, talk to your friends about supply chain security.
If you want to detect exploitation of #printNightmare/CVE-2021-1675 (and you most certainly do) enabling PrintService-Operational event logging (not default), was the most reliable method we found in the @BreachQuest lab.
Here's how to script enabling the logging: