· @twitter
1 followers · 57287 posts · Server mstdn.skullb0x.io

Originally posted by DEF CON / @defcon@twitter.com: twitter.com/DFIR_ADD/status/16

RT by @defcon: Thrilled to announce our workshop will be at @defcon 31 with @Mr_Forensics and @S3curityNerd! Dive with us into the depths of as we unveil cyber threats. Perfect for experts or newbies alike. Stay tuned for registration details. Let's dispel the digital darkness together!

#DFIR

Last updated 1 year ago

· @twitter
1 followers · 56485 posts · Server mstdn.skullb0x.io

Originally posted by DEF CON / @defcon@twitter.com: twitter.com/gleeda/status/1663

RT by @defcon: I am happy to announce that I will be giving a training at @defcon this summer on Windows Memory Forensics!

#DFIR #memoryforensics

Last updated 1 year ago

Duggy Tuxy · @duggytuxy
10 followers · 15 posts · Server mastouille.fr

Une belle découverte du matin, très bon outil autour du Threat Hunting, Forensic de WithSecure

"ChainSaw" - Rapidly Search and Hunt through Windows Forensic Artefacts

Lien repo ==> lnkd.in/eEj_C2bW

Source ==> lnkd.in/eeJkwKRn

#infosec #cybersecurity #blueteam #threat #windows #DFIR

Last updated 1 year ago

WhatDoesKmean · @seercle
1 followers · 12 posts · Server red.niboe.info

Mi charla del último SANS DFIR Summit 2022 fue un gran desafío personal y una muy agradable experiencia que espero pueda serle util a la comunidad cyber😊

youtu.be/Epe3hWqiqnE

#DFIRSummit #DFIR #sans #dataengineering #cybersecurity #soc #blueteam #ThreatIntelligence #infosec #ciberseguridad

Last updated 1 year ago

Die_Primel · @Die_Primel
369 followers · 8291 posts · Server det.social

RT @Jipe_
CERT-FR has published an advisory related to an ongoing ESXi ransomware campaign. As of today ESXi 6.x (< 6.7) / CVE-2021-21974 would be exploited by the threat actor. The campaign has been observed by 3 French hosting providers. cert.ssi.gouv.fr/alerte/CERTFR

#DFIR #cybersecurity

Last updated 2 years ago

chrshmmmr · @chrshmmmr
106 followers · 47 posts · Server mastodon.online

At APTA, we just updated our artifact for . It helps incident responders and cybersecurity analysts dig through Windows event log files faster. Using unsupervised learning techniques, we calculate novelty scores for all events.

You can try it out here: github.com/APTA-Technologies/A

#startups #machinelearning #cybersecurity #incidentresponse #DFIR #velociraptor

Last updated 2 years ago

WhatDoesKmean · @seercle
1 followers · 12 posts · Server red.niboe.info

This image was specially built for my 2022 talk. The repository comes with a Docker image of jupyterhub installed along with a Jupyter notebook example.

hub.docker.com/r/whatdoeskmean

#cybersecurity #docker #jupyternotebook #DFIR #sans #JupyterHub

Last updated 2 years ago

WhatDoesKmean · @seercle
1 followers · 12 posts · Server red.niboe.info

Did you miss the Summit 2022?

No worries! This is a curated list of links and resources brought to the attendees this year (Including mine ☺️)

start.me/p/xbwgd0/sans-dfir-20

#infosec #cybersec #DFIRSummit #DFIR #sans

Last updated 2 years ago

WhatDoesKmean · @seercle
1 followers · 12 posts · Server red.niboe.info

Based on my last Summit talk, I'm upgrading an IR Notebook which demonstrates a simple way to analyze and enrich using , Threat Intel , Google Sheets, and Google DataStudio dashboard.

#soc #IncidentResponse #cybersecurity #infosec #blueteam #ThreatIntelligence #api #python #logs #DFIR #sans

Last updated 2 years ago

Steve Gibson :cupofcoffee: · @steve
151 followers · 167 posts · Server tooty.org

Hello fediverse! Here's my . I'm a practitioner in the and field. Currently employed doing breach response, investigations, and developing AWS IR automation workflows. Love tinkering with tech, coding, and experimenting with "new things", which lead me to setup this personal Mastodon instance rather than joining an existing one. I'm a big Austin FC fan, enjoy sci-fi, coffee, craft beer, and whiskey. Any typos are due to cats walking across my keyboard.

#DFIR #infosec #introduction

Last updated 2 years ago

m0x · @m0x
8 followers · 14 posts · Server social.plzpet.dog

Hi everyone, I'm not new to Mastodon though haven't used it much since a previous instance I used went offline. Given recent events with mainstream social media I decided to spin up my own instance. So, here's my !

I do things mostly, everything from and research to and . I'm also a dog on the internet 🐶

Looking forward to connecting with some of you! Much love 💜

#introduction #infosec #DFIR #malware #CTI #OSINT

Last updated 2 years ago

kamthorn · @kamthorn
56 followers · 1913 posts · Server mastodon.in.th

RT @CraigHRowland@twitter.com

This is how you de-cloak Linux malware masquerading as a kernel thread. I'll show you how to simulate this attack and how to investigate it with simple command line tools.

sandflysecurity.com/blog/detec

🐦🔗: twitter.com/CraigHRowland/stat

#DFIR #infosecurity #linux #forensics

Last updated 5 years ago