@ParrotSec ; was downloading v6 of your HTB .iso via my Proxmox instance, and I am getting checksum errors for sha1 and sha224; am I just a snowflake or is the hashes .txt file incorrect?
Exciting News in Cybersecurity! 🚀
My team just launched a FREE Security Incident Response Series on AWS Skillbuilder!
Perfect for enhancing the skills of security teams. 🛡️
Check it out! 👇
https://t.co/WAmNZeOP2m
Read more below for the direct links to each session!
Glad to see the positive response to our report template for cybersecurity and privacy incidents. It's free so that you can strengthen your incident response capabilities. Here's the link again: https://t.co/sKdsueCrPw
2022 Year in Review
➡️Most common TTPs we saw in 2022
➡️Trends around IAB's
➡️Top detections
➡️Ransomware propagation methods
➡️and more!
https://t.co/KT7u22VHFc
I've updated the Antivirus Event Analysis Cheat Sheet to version 1.10
- a few updates in several sections
- added Sliver and Brute Ratel C4
- more tags for assessment with Virustotal
https://t.co/yGYKoBSDdc
Please RT for reach: I'm looking for an incident response maturity model. Does anyone have anything you've heard of (or even better, actually used) to measure/drive maturity in incident response? Thanks!
(DMs are open if you need/want to remain anonymous)
New YouTube video out on threat intel basics - What threat intel is, how to use threat intel, and how to try @MISPProject threat intelligence platform with Docker in just a few minutes! For the SOCs out there without dedicated a TIP, check this it out! https://t.co/IxxjZ0cjx7
Kudos to @NCSC, @NSAGov, @CISAgov, and @FBI for some best-practices use of ATT&CK in reporting on recent intrusion activity by https://t.co/C6Q1IL2ZnC.
If someone asked me what would be the single most effective method to detect phishing attacks I'd say it's monitoring sub processes spawned by Microsoft Office products
Requirement: Parent/Child relationships as provided by Sysmon EventID 1
https://t.co/0UlU6bVzcT
We know what you’ve been thinking, STIX is great, but if only I could have ATT&CK in Excel. We heard your thoughts, along with ATT&CK v9 last week, we released ATT&CK in Excel for every ATT&CK domain. Check it out and our new Working with ATT&CK page at https://t.co/JXilGDQXeY
🗓️ You can still register for @CISAgov's ransomware webinar at 9am today!
Join our cybersecurity experts as they go through a #ransomware attack in real time.
➡️ Sign up at https://t.co/mbHEPGzKrJ to reserve your spot!
#Cybersecurity#InfoSec#DataProtection
Looking for some free ATT&CK training? Last week, @MITREengenuity launched the MITRE ATT&CK Defender program with training created by members of the ATT&CK team. Check out ATT&CK Fundamentals, ATT&CK SOC Assessments, and ATT&CK for CTI via @cybraryIT at https://t.co/Wu5W2irIeg!
I've published an updated version 1.8 of my Antivirus Event Analysis Cheat Sheet
- second screenshot shows you how it would've helped your SOC analyst classify HAFNIUM findings on your Exchange
https://t.co/eLOBcHs8to