I've been working hard for the past few months on a BIG update to my Investigation Theory course. I added a bunch of new material from my recent research, added new exercises, and re-recorded all the course videos. I'm really happy with how it has come together.
Really excited to share this!🎯
Target’s Cybersecurity team has open-sourced its digital skimmer detection framework, MerryMaker! Really great work by @AffableKraut@cr_carlson and team!
https://t.co/5eACQzk2jT
Gave a internal presentation today, which had 3 parts:
1) Why CTI is needed and Defense-in-Depth is not enough
2) Common pitfalls people fall into where CTI could help, in this case Ocean-11-ing and Chasing Headlines
3) How CTI practices can be useful in your own job.
If a few of these people get together and jam https://t.co/dKP1VyNBud
...are they Blood, Sweat, & Tears?
Welcome to clustering cyber crime activity. 😩
Sign-up for tomorrow's webinar and earn more about @Target's Cyber Fusion Center (CFC) teams’ capabilities and what happens when they activate the war room as they walk through a high severity event. https://t.co/BUQ8kLUuuQ
#humanintel#analytics#cyberthreats
NEW VIDEO ON YOUTUBE!
Learn about the birth of the WAVE Matrix, how Target increased its active ransomware coverage by 700%, and how to implement this process in your organization to create massive cross-team security wins.
https://t.co/q6JKtCPL84
Very proud to have the WAVE framework covered by @CyberSecDive. I'm so glad with how useful my work has been to others and it's been awesome to see how it's resonated with other intel teams. We're hoping to have more info out in the next month to continue to help teams mature!
The @sansforensics#CTISummit talks have been published! Login to SANS to find them but if you need a guide to when/what: https://t.co/tjZRbtKdnv I got you
😱I'm letting the cat out of the bag!!!😱
This 2020, I've been pouring my heart and soul into my first book: "Practical Threat Intelligence and Data-Driven Threat Hunting"
Thanks @PacktPub, @33root and @wumpwoast for putting up with my stressed self 😅
https://t.co/8OuZOFnpgS
@whoami_exe@NathanIcart So glad you enjoyed it! We're planning out our steps for further public information on WAVE, but we're hoping to release more soon and I'll be sure to tweet about it!
#CTISummit Track 1:
Spooky RYUKy: Chapter 2
@Wanna_VanTa , Aaron Stephens @x04steve provide updates @Mandiant has on the group's operation, and expand on the tradecraft previously presented to highlight important concepts when dealing with interactive ransomware operators.