@intigriti Here's @OpenAI's attempt at becoming a bug bounty hunter. How do we think it did? It certainly threw out a bunch of valid looking guesses, but did any come close enough to claim a win?
@SiriusCyberntx In general, tune the source whenever possible. That said, the real trick is having a process to tune false positives quickly and with minimal friction, which may mean “tactically” tuning at the SIEM where the workflow can be centrally managed and controlled.
Join us TODAY @ 12:30pm CT (in 2 hrs!) for THURSDAY DEFENSIVE!
Today's guest: @rj_chap, chatting about Ransomware.
https://t.co/L3LlAsyjK6
#infosec#thursdaydefensive
Python 3.11 is out! 🎉
This is one of the most exciting releases in a while, including significant speed upgrades and better error messages.
Here's what's new:
As we watch Basic Auth in O365 finally start to die off, I find myself reflecting on how ridiculously long we've lived with MFA Bypass as a thing. Those incident & pentest findings were brutal for orgs that thought their heroic efforts to roll out MFA had done some good.
I thought "hey, maybe #Linux🐧is ready for regular people" and got my wife all set up👍
Two weeks later she's stuck in a black initramfs boot loop and I'm scrolling linux forums like it's 2007 to intone the right CLI-magic to fix the thing👎
Guess I'll try again in 3 more yrs🤷
Join us TODAY @ 12:30pm CT (in 2 hrs!) for THURSDAY DEFENSIVE!
Today's guest: @_bromiley of @limacharlieio chatting about #DFIR , Blue Team, Defense, Giving Bad Guys Headaches.
https://t.co/HZVvY3blBE
#infosec#thursdaydefensive
@JimmyVo you gave me an idea....will @OpenAI be writing our threat detections next? Here's a first attempt without any special training data; it seems to get the gist of it. Will we someday skip this human-centric step completely? #Blueteam#BlueteamAI
Join us TODAY @ 12:30pm CT (in 2 hrs!) for THURSDAY DEFENSIVE!
Today's guest: @_bromiley of @limacharlieio chatting about #DFIR , Blue Team, Defense, Giving Bad Guys Headaches.
https://t.co/HZVvY3blBE
#infosec#thursdaydefensive
@JimmyVo you gave me an idea....will @OpenAI be writing our threat detections next? Here's a first attempt without any special training data; it seems to get the gist of it. Will we someday skip this human-centric step completely? #Blueteam#BlueteamAI
Aachccccccucjrdciiindrlhrkrtifidrvdcdiltgrteuhoooo!
Gesundheit!
If you suffer from chronic #Yubisneeze, ask your doctor if Swapping Slots™ is right for you: https://t.co/vpd46kKtpy @Yubico
@alexstamos Hilariously well said. Also, you can bypass that dumb virtual keyboard manually and automagically. Your “secure” design shouldn’t encourage users to install random scripts :/ https://t.co/5k2xJzyxOP
Messing around with @OpenAI looking for some interesting #BlueTeam use cases is like playing two truths and a lie: shocking accuracy followed complete fiction. Here's the (slightly modified) 2021 Kesaya attack as analyzed by a robot. Any lies? Try it out! https://t.co/D5TANJJxqn
@Recon_InfoSec....are we the baddies? @OpenAI seems convinced that we're on the wrong team. 🤔 I don't know who to believe any more 😬 https://t.co/ZDGbwfgaJ3