Partner at Blackthorne Consulting; Former Red Team Director at GE and US Navy; Advisory Board member; Navy veteran Opinions are my own @[email protected]
Red Team isn’t all shells and champagne. It’s long hours of analysis looking for that *one* flaw that gives you the access you need to move toward your objective. You’ll even obsess in your sleep, and the answer will hit you in the shower. Then, repeat!
Hard to believe it's that time of year again! If you will be in town during #blackhat or #defcon and would like to (re)connect, feel free to DM me. Hope to see you there!
.@Volexity shares #threatintel on how #StormBamboo compromised an ISP to conduct DNS poisoning attacks on targeted organizations & abuse insecure HTTP software updates, delivering custom malware on both macOS + Windows.
Read the full analysis: https://t.co/iqAH1PgVVz
#dfir
Praetorian is hiring for another 3 red teamers at the lead+ level of experience.
Have to be lead or above for this hiring round, no junior or senior for the red team until next quarter, but there are other open positions on our website. We filled 29 reqs in Q1 and are scaling quickly but sensibly.
Our clients have mature environments, you won’t have an easy life; but if you like to be challenged, this is a good place for you.
**I am slow in DMs, best apply via our website but drop me a note
Which sounds more realistic?
“If we do a few strategic things we kneecap the attackers”
“We can do all the things everywhere all at once, 365x24 forever.”
It seems like focusing our limited resources where it matters would be better.
3
My friend Krypt3ia is still searching for a remote CTI role after being caught in the layoff cycle. He's got years of solid experience and technical chops - including LLM training.
If you've got leads, ping me and I can pass them along or share his resume. RT for reach pls.