i don't post much here these days, but this one feels worth sharing to the #DFIR community
@eric_capuano has been working on this side project, almost at MVP 🌈
so if you work in forensics and want super timelines on macOS... THOON!
God I hate the fact that Threat + Hunting is being called "Thrunting." And we now have Threat + Hunters who are "Thrunters." This is all I can see when I see these terms...
Workshop happening THIS THURSDAY:
✔️ Pay What You Can
✔️ Collaborative interaction with instructor & fellow students
✔️ Access to course slides for future reference
✔️ Tips, tools, & techniques that can be applied immediately
https://t.co/18r3Nz3TIA
Something to look forward to this Friday: Foundations of Network Forensics & Analysis with Troy Wojewoda!
This workshop is 4 hours long and includes hands-on labs. It's the perfect way to fit a bit of training into your workweek.
Registration & details: https://t.co/0NyQfKHvad
Hey folks!
THURSDAY - BHIS Webcast
Join us for a free one-hour webcast with the Black Hills Information Security (BHIS) ANTISOC Continuous Penetration Testing team.
Learn how we test our client's security daily and take home tools and techniques to try yourself.
Isn’t this just a Red Team? It’s complicated. We'll explain.
Our goal: help you think like the threats you're up against.
Thursday, July 24th - 1:00 PM EDT
Register (Zoom): https://t.co/G0IxCStdoF
Show up early for Pre-Show Banter! and Hack It!
FRIDAY - @Antisy_Training PWYC Workshop
Something to look forward to this Friday: Foundations of Network Forensics & Analysis with Troy Wojewoda!
This Pay-Forward-What-You-Can workshop is 4 hours long and includes hands-on labs. It's the perfect way to fit a bit of training into your workweek.
Registration & more info: https://t.co/uZ1OCErfHo
It's dangerous to go alone, here... take this knowledge with you.
Joseph joined us last week to share what he's discovered and learned about the Dark Web, so you never ever ever have to go there for yourself!
No slide deck for this one so just sit back and enjoy - https://t.co/l8HsLnVzVn
If you're looking to get into SOC work, specifically Detection Engineering, I'm running a Pay-What-You-Can Detection Engineering workshop on March 7th: https://t.co/uwYGnBGIBV
INFOSEC CONTENT CREATORS! Do you have a YouTube channel, Twitch stream, blog, magazine, or anything else where you share your knowledge and insights on cybersecurity, please drop the link in the comments.
We want to help you find more people to help.
We're all in this together!
Ever wanted to run Nuclei scans at scale without relying on Nuclei Cloud? Now you can!
Ralph May joined us for a free one-hour BHIS webcast and taught us about the power of Nuclei scans and their incredible value for security teams. But that was just the beginning.
Ralph introduced Orbit, a tool that makes this vision a reality, and showcased its features with a live demo
Watch the full webcast here - https://t.co/5BaqhiwpDn
Tools:
Orbit Scanner - https://t.co/K2yLa2O6v9
"In addition to being common, access control vulnerabilities are often high impact when exploited..."
Read more: https://t.co/kp3vG2gSGv
Finding Access Control Vulnerabilities with Autorize
by: Craig Vincent
Published: 11/21/2024
"Did you learn the standard formula? Cyber risk = Threat x Vulnerability x Consequence"
Read more: https://t.co/juD15mRl7A
Cyber Risk Lessons We Can Learn From Hurricane Preparedness
by: Kelli Tarala
Published: 11/14/2024
Blue teamers — sometimes we can lose sight of Active Directory. I mean, it just works in the background, right? Active Directory is crucial to Windows networks and a perfect target for bad actors. Dive into this article to learn common active directory pitfalls and how to avoid getting your day ruined.
Read this article and more educational content for free in PROMPT# SOC Issue - https://t.co/Fz08GO7liZ
Resources on Active Directory:
Fun with Office Macros
https://t.co/iKXDGgqkGB
From Zero to Hero: Beginner’s Guide to Active Directory
https://t.co/DnXgMYuBLZ
New Methods to Attack & Defend Active Directory
https://t.co/VljjTWPFrQ
Your Active Directory Active Defense ADAD Primer https://t.co/1LhNg5AKcX
Weaponizing Active Directory
https://t.co/iQH2s0wSfW
Active Directory Best Practices That Frustrate Pentesters
https://t.co/iHwPqr2DoD
Blogs - https://t.co/hiERI5oZTM
Day 347 of 366 Days of Cyber!
Want to take what you learned from yesterday post further? Antisyphon Training has got you covered -https://t.co/97VzIWmk7x
If you'd like more helpful educational content, check out the Infosec Survival Guide: GREEN BOOK - https://t.co/TOUYdfuK5t
If you're an educator, please reach out to the Black Hill's team about sending you copies of the guide for free to help in your efforts to raise up the next generation of infosec professionals.
https://t.co/Xu60gNygWF
listening to one of the sharpest minds in our space, @Recon_InfoSec's @whoisAndrewCook, drop wisdom bombs at @BSidesAustin 🥹🔥🙌
"proactive defense: building effective threat hunts with AI and human expertise"
What is SQL and why is it worth learning?
Come join a former SQL-hater to learn the capabilities of the universal data query language and how you can use it for more than just databases.
Join us for a free one-hour Black Hills Information Security (BHIS) webcast with Security Analyst - @EthanRobish , about Intro to Data Analytics using SQL.
Thursday, November 21st — 1:00 PM EST (UTC -5)
Register here:
https://t.co/lN7WA88yIZ
Ethan will cover a broad swath of both introductory and advanced SQL features.
If you're looking to push beyond the boundaries of spreadsheets or command-line kung fu this webcast is for you.
By attending, you'll gain an understanding of the types of problems that SQL excels at along with examples using DuckDB, a modern Swiss army knife of data analytics.
Show up early for the pre-show banter!
John & Ethan
#webcast #SQL
Free workshop: “Advanced Email Threat Hunting w/ Detection as Code” by Michael Robertson @Recon_InfoSec
Buy conference tix by EOD 11/22 to receive email when wksh reg opens—1st come, 1st served
https://t.co/nWnHDD7S3B
@SecurityBSides@BSidesSATX@AustinISSA@dc512@LASCONATX