Had a fun chat with the inimitable @haroonmeer. In conversation, “they say never meet your heroes” — well, he’s one of mine, and I’m glad I met him. Much ❤️ to the @ThinkstCanary team from all of us at Smokescreen, now Zscaler. Fight the good fight. Respect > competition.
We’re sponsoring #ZenithLive 2021, an event designed to help you navigate the digital future at cloud speed. Join @amol_s_kulkarni during tomorrow morning’s keynote to hear how @CrowdStrike and @zscaler work together to deliver end-to-end protection. https://t.co/jKrZOWlGKR
1/2 - Possible #activedefense measures against golang based XMRig.
1. Decoy public jenkins and tomcat pages to trap password guessing.
2. Open port 52013 on DMZ machines locally to prevent execution #infosec#DFIR
Credits:https://t.co/dw98y1BEd7
@AndreGironda@BadassDoGooder@richardclarke Agreed. Active defence is not just about plugging boxes into the network or running decoys. It’s a shift in thinking about what you do with the bad guys once they’re behind your lines.
In the last episode of The Great Debate webinar, Danny Jenkins & @samehysabry debated whether or not #ThreatHunting should be the top #cybersecurity priority right now. Read the recap:
https://t.co/Hpb9VJOmCZ
One thing we MUST change as an industry: Please stop focusing on the initial access point when breaches happen. There will always be a way in. I want to see people talking about why it wasn't detected sooner and where response failed.
@apbarros The SpecterOps Funnel of Fidelity applies well here. Security teams just don't think end-to-end about the funnel. Stopping threats is 0/1. Great detection + bad investigation == clogged funnel == 0
.@kevinbfiscus of @SANSInstitute and our very own @sahirh talk offensive security, entrepreneurship, and of course deception technology. https://t.co/nhmVYHDxBX
#throwbackthursday An oldie but a goodie. @sahirh and @APACinfosec from @ISMG_News talk about why defenders need to think like the attacker and how deception technology helps security teams play offense.
https://t.co/DGsWeuI7l4
For me, one of the most useful macro-level talks on #cybersecurity in recent years was this by @gadievron. A lot of us in #infosec have felt the Cassandra effect and spent time clearing up messes created by the long tail of flawed tech decisions. https://t.co/RYwYU5QE1H
“We interdict the adversary’s ability to navigate the kill-chain by hunting across the battlespace for points of egress and exfiltration. We deploy precision cyber-munition countermeasures to neutralise deep-cover threats.” <— real or fake?
We suffer from "verb inflation" in infosec: "instrument, orchestrate, profile, baseline, analyze, collect, protect, prevent, detect, hunt, predict, prioritize, assess, block, investigate..." - I bet we could use half of those without losing any meaning and cutting a lot of BS
@apbarros While I’m pro-text, I suppose it’s also that people can “say more” in a video than write in 280 chars. Not that that’s necessarily a good thing! 😆
New startup idea: auto-transcribe vidlogs and post the text stream; with deep learning of course. Hit me up VCs!