We're not Santa and this isn't a secret, but it is a giveaway! For your chance to WIN the #OnePlus8T and gear below:
Make sure you're following us ✔️
❤️ and 🔁 this tweet
Good luck!
#defcon28 has entered Safe Mode.
The #DEFCONiscanceled meme has crossed over into real life, courtesy of #COVID19. In early March we had hopes that things would be stable by August. That is no longer realistic.
I wrote a 30-day security guide for engineers who have been handed access to an in-use #AWS account with zero explanation of what's inside. #security#devops#secops#cloudcomputing
https://t.co/HecNk5bCph
Soon after this tweet, the CEO of Zoom @ericsyuan reached out and offered me an internship. Excited to announce that I'll be joining Zoom's security team for the summer.
I've just launched https://t.co/WonNIjcrFm
You can find all WordPress version vulnerabilities for free without any limitations.
#WordPress#infosec#OSINT
@hackerfantastic code word via a different encrypted channel for the start of each day - no codeword mentioned at the beginning, no conversation.
plus it's cool saying codewords at the start of each meeting
'grey squirrel' *nod*
A Survey of Open Source Threat Emulators, by @bengurionu:
- APT Simulator,
- Red Team Automation,
- Uber’s Metta,
- Caldera,
- Atomic red team,
- Infection Monkey,
- PowerSploit,
- DumpsterFire,
- Metasploit,
- BT3 and
- Invoke-Adversary
https://t.co/6l3erMwMyJ
@TinkerSec Tough spot but just make sure you aren’t putting the pressure on yourself. Can’t know everything. If the ask is high it will just require more time taking into account research / figuring out.
From the folks that brought you Atomic Red Team, Chain Reactor is a new open source framework for composing executables that simulate adversary behaviors and techniques on Linux endpoints. https://t.co/nEowIlLKjY
lsassy 1.0.0 is finally out !
🔸 Remotely dump #lsass **with built-in Windows tools only**, procdump is no longer necessary
🔸 Remotely parse lsass dumps to extract credentials
🔸 Link to #Bloodhound to detect compromised users with path to Domain Admin
https://t.co/NxIFkc2DUk
“We believe that Powershell and Empire framework will remain a major threat vector employed by APTs, malware authors, and Red Teams.” SO WHY ARE YOU UPDATING IT? You are improving capabilities you explicitly say are *used by bad guys.* Scottie, beam me up from this bizarro world.
⚙️Account Logon Flow / Process (#Windows) v0.1
📕[PDF]:https://t.co/B3RlMBxvG4
🔗[DIRECT]:https://t.co/5XEXQomsFf
...for self understanding logon flow / process in windows system. Special thanks to Andrei Miroshnikov💪
"Find Evil – Know Normal" #SANS#threathunting#blueteam