#KQLHunt! I will continue to update. In this iteration we are looking at MFA Failed Logins, both non-interactive and interactive. I have the option to filter by error code as well! Happy hunting! #clouddefense
Link: https://t.co/vgsEFjwXPg
🐧 Earlier this year I passed my Linux Essentials and it was probably the most enjoyable cert I've studied for. Linux skills are a MUST for cloud computing. Here are my notes:
Ever wonder what Windows Server services you should disable for performance or security purposes?
Wishing there was a comprehensive list?
This doc has been around for a long time, but you might have missed it because the title is confusing...
https://t.co/ZlmexK45pt
New blog: Guide for security administrators using Microsoft 365 Defender and Azure Defender to identify and implement security configuration and posture improvements that harden enterprise environments against Solorigate’s attack patterns https://t.co/WRiVtfPFYx
Sysmon 13 has just been released. I’ve just published a detailed look at the new ProcessTampering feature in a blog.
https://t.co/QtWyBqm2rq
#DFIR#Infosec#Sysmon
Check it out if you don´t know it, yet.
[Repo] Prowler (AWS Security Tool) - is a command line tool for AWS Security Best Practices Assessment, Auditing, Hardening and Forensics Readiness Tool.
https://t.co/DtxScVbei9
#CloudSecurity#AWS
Some additional resources for searching for potential exposure: GitDorker - Fast GitHub Dorks for Easy Bug Bounty Wins | Medium #owasp#appsec https://t.co/zobUPyEfhI
@TripwireInc report on emerging public cloud security challenges. Securing API’s, locking down user access, and Insider Threat are among top concerns: https://t.co/Qe45JgVgEe #cloudsecurity#DevSecOps
Mapped all of the Amazon GuardDuty Findings to @MITREattack. A bit more of an art than a science. Hopefully useful to some detection and response teams out there. See 🧵for more detail 👇
Currently there is an AWS outage that is impacting Kinesis among other services. Here is a link to the outage page to track: https://t.co/i3Q863ZpLw Article: https://t.co/Y9sS3tri6p
#cloudsecurity#awsoutage#bcpdrp