Today, I'm releasing the first version of a small web 🚀: https://t.co/WZMsLWpGEK
It provides IOCs and YARA rules collected semi-automatically from public blog posts and reports of almost 200 cybersecurity sites.
I hope it proves useful to some of you ... 🙏✨ #ThreatIntel
This hack is brilliant, APT28 hopping into a target environment over wifi by compromising neighbouring companies and finding a dual-homed host within range.
https://t.co/mGWU5Hdwi6
And yet... they got caught doing this!
@vmesc4pe@_JohnHammond We do the same. Its great for automated flows and sharing, all machine-to-machine stuff, and as a database. But we use other tools to actually do the daily job, like OpenCTI and self developed things.
Windows 11's new AI Recall feature raises security concerns. Therefore, check this KQL hunting query (see below) designed for Microsoft Defender for Endpoint users to detect any activations of AI Recall on your network which has been created by Steven Lim.
#ThreatHunting
We are hosting our monthly Community Evening in Stockholm (on-premises, not virtual), this time on the subject of 'Operational Technology' with a guest speaker from SANS.
Welcome!
Link for pre-Registering:
https://t.co/Bi14Pz73bp
Nothing to be scared about folks, just another CVSS 9.8 0day disclosed 0days ago that's gonna get code execution in 0 seconds (3 seconds to be more accurate), no limitation, no authentication, no shit, just straight up remote code execution
#IvantiForLife
Has anyone seen any way to visualize for Corp Users any changes IT does to o365/EntraID/Intune?
Im dreaming of an internal website showing anything that has changed, showing any new apps, policy changes etc etc
I cannot believe that you would post this child who clearly suffers from harlequin ichthyosis. This child was NOT burned by white phosphorus. The tightness of this child’s eyelids is due to the medical condition and NOT due to being burned alive. Shame on you. Do some research before posting your utter tripe. The only war crime is your X account, you foolish man.
@matthew1471@markwilsonit Same! And i do run the early releases for Unifi without her knowing and pray to god every update that nothing will break 😁. #shadowIT
I highly suggest everyone in #CTI to check out the community version of @ValidinLLC.
Free availability of historical DNS data going several years back is absolutely amazing to have at hand.
I use this tool several times a week during my investigations, with great success.
This 👇 is interesting and suggests that we can't anymore consider only the possibility of a common initial access broker #IAB in case of one victim claimed under more than one #ransomware brand.
I've counted 88 cases of cross-claims since Jan. 1st, 2023. Let's take a look...