To my air defenders out there. You know what to do, many of you have trained your entire career for this moment. Keep your head in the game if a leaker gets through but you are still functional fuck it you have a job to do we can deal with it later. As long as there are birds on the rails and breath in your lungs you don’t give them a fucking inch. Good luck and Godspeed.
‼️At the end of last year, there was a series of coordinated attacks in Polish cyberspace.
📌Today, our team is publishing a report describing the technical analysis of these events. We show the scheme of operation and the tools used by the attackers.
➡️cert.pl/uploads/docs/CERT_Po…
Weapons do not fight by themselves. When orders are crippled by betrayal and negligence, and doors are opened from within, even the strongest defenses fall without a single missile being fired.
Metal is deaf, and gunpowder has no will of its own; a weapon in the hands of a traitor is nothing but wreckage, and in the hands of the careless, a heavy burden. Fortresses do not fall because of the hardness of cannons, but because of the fragility of conviction; and when betrayal seeps into centers of decision-making, rifles are emptied of their bullets before they are ever fired.
When those responsible fall asleep (or betray) the weapon itself collapses, unconscious.
I am of the strong opinion that NATO standards and norms around helmets and body armor should reflect the weapons that define modern warfare - airburst munitions, drone attacks, etc.
Optimizing for low-velocity 7.62 rifle threats made sense once upon a time, but no longer.
✅The UAC Bypasses module is now available in the instant SIEM!
Practice investigating a diverse set of UAC bypasses with Kusto Query Language (KQL)!
#ThreatHunting#DFIRaceresponder.com/learn/uac-b…
At this point, maybe North Korea should just start selling bootcamps for how to break into cybersecurity. They seem to have really figured that shit out.
This talk from @JohnLaTwC is indeed very good and is taunting me with doing math at work 😒
Srsly tho I’d love to take a class on applied algebra for anomaly detection from him because he explains it so clearly 🤩
Great talk by @JohnLaTwC on ways you can turn security data into graphs: youtube.com/watch?v=cXhX3sNh…. Especially the vector part is great: so many tools have built in support for embeddings (e.g. BigQuery ML.GENERATE_EMBEDDING and VECTOR_SEARCH), defenders should be using them more!
Great talk by @JohnLaTwC on ways you can turn security data into graphs: youtube.com/watch?v=cXhX3sNh…. Especially the vector part is great: so many tools have built in support for embeddings (e.g. BigQuery ML.GENERATE_EMBEDDING and VECTOR_SEARCH), defenders should be using them more!