In today's "quick news bite" world I respect the longer-form journalism of @riskybusiness. This week: grading journalist responses to the Trump campaign hack (+more)
https://t.co/JRIgDWeHv8
FD: @corelight_inc sponsors; more to come on my thoughts re: CISA advisories to date!
Ransomware is a hard problem (yes, captain obvious!). Thanks @Trinity Chavez of @NYSE for the chance to share more about how we help defenders use visibility to deny ransomware demands: https://t.co/vx745oYh6T
@corelight_inc
Love seeing this. From what I've seen, this is great leverage of deep expertise (CISA) + direct help on concrete threats = real help across the energy sector. Good tax dollars at work!
https://t.co/2uhmirGlSK
Solid writeup from @Mandiant on how their analysts are using LLM's (here: Bard) for investigation. Agree wth the approach, have seen our customers do the same! Worth a read:
https://t.co/lt3kdAz10d
When companies all around the world are learning how to build prompts and train gen AI models, @corelight_inc & @Zeekurity "just work" in ChatGPT right out of the gate. No vendor dependency, no lag, just instant value.
Sharing a few thoughts on why:
https://t.co/gqNCwBJ4dO
Old but true: endpoint for depth, network for breadth! How to make them work together? See next Tues (6/27) at 7 am PDT when @corelight_inc and @CrowdStrike show how do drive integrated IR without breaking the bank https://t.co/g2cw6C9Evo
#NetworkSecurity#NDR#EDR#DFIR
Don't know what criteria @TheCyberExpress had for the top 50 CISO's list, but imho the keys for @corelight_inc's Bernard Brantley are:
1. Read + learn maniacally
2. Build cross-org bridges
3. Contribute broadly at the exec table
Easy to say, hard to do!
https://t.co/os3NtW6UPV
If you're heading to #RSAC2023 this week and want to see what @corelight_inc is doing with @OpenAI, swing by booth 1555 in the South Hall. Happy to show you!
Thanks @MichaelNovinson! Beyond threat detection, network visibility accelerates IR through attack scoping + confirming containment / remediation. This drives our work with @CrowdStrike + defenders WW. More to come!
@ISMG_News@corelight_inc https://t.co/duKESLrdId
It is a privilege for all of us at @corelight_inc to support the @CrowdStrike team: adding the best network insight to such a strong team and tech platform is an unqualified win for defenders around the world.
More at https://t.co/4MqNJuRmFi
ZeekWeek22 is coming up - Oct 13-14 in Austin! Great people and insights on network defense. Can’t wait to see the day 1 keynote by @wendiwhitmore SVP @Unit42_Intel at @PaloAltoNtwks - hearing her is enough to justify the trip on its own! @corelight_inc@Zeekurity
As we unpack what "evidence based strategy" really means our first thoughts are on accelerating IR / TH. However, the downstream impact on defensible disclosure is larger in many ways. @taosecurity's thoughts are worth a read: https://t.co/npljv6XI91 @corelight_inc@Zeekurity
If you've been interested in @Zeekurity but don't have the time to set up your own demo environment (who does?!?) check out the @MeetHumio Community Edition. Great SIEM to check out some great data! Thanks @CrowdStrike! @corelight_inc https://t.co/cHxn3BiFCZ
After having LOTS of defender conversations on this, happy to share their insight on moving to "evidence" as a strategy for disrupting advanced attacks. We play a part of course, but it is much bigger than any one tech / vendor: https://t.co/XRgSD2bJKf @corelight_inc@Zeekurity
[New Webcast] Learn network-based strategies for hunting nation-state actors. @corelight_inc's @alexgkirk will review the specific TTPs defenders of critical infrastructure should monitor to identify/disrupt #CyberAttacks. 3/22 @ 11 ET
https://t.co/QcM3yaV4cX
#CyberSecurity#DFIR
Worth reading @WSJ's @mims article on the cyber aspect of the Russian war - brings some meat to the topic. Found the comments from @Netskope's @ray_canzanese and @Sophos' @chetwisniewski solid (in addition to @corelight_inc's Jean Schaffer of course).
A great read over the weekend from @WSJ's @mims on what may be to come w/r/t Russian cyber attacks. He spoke w/ leading cyber experts & current/former govt officials, including our own Federal CTO Jean Schaffer to learn more: https://t.co/sEFqLDIH0y
Also read his: 👇
Appreciate @helpnetsecurity's coverage on the trend of Two SIEMs (for IR vs threat hunting), and found @snomersinger's related LinkedIn discussion on alternative platforms like @SnowflakeDB worth a read as well: https://t.co/R2lejifuAM @corelight_inc@Zeekurity
I've been asked a few times why network monitoring is so important in the cloud. Log4j and application layer visibility is one (of many!) great reminders of why - check out this note by @corelight_inc 's own Ricky Lin for more:
https://t.co/ZE33WcQGOg