RT @chrissanders88@twitter.com
Investigation Scenario 🔎
You’ve been alerted to outgoing network communication from a Linux host with the HTTP user agent E9BC3BD76216AFA560BFB5ACAF5731A3.
What do you look for to investigate whether an incident occurred?
#InvestigationPath #DFIR #SOCAnalyst
🐦🔗: https://twitter.com/chrissanders88/status/1612826638634336257
#InvestigationPath #dfir #SOCanalyst
And, finally #tech interests, Mastodon memes, and professional shit I might mention here in passing -- but is mostly to be found on my main account, @erosdiscordia@hackers.town (which you're also welcome to follow-request!):
#offsec
#BlueTeam
#obsidian
#VivaldiBrowser
#linux
#PopOS
#infosec
#NetworkSecurity
#cybersecurity
#hacking
#SOCanalyst
#IncidentResponse
#ThreatIntelligence
#PurpleTeam
#electronics
#indieweb
#permacomputing
#RetroComputing
#WeAreNameless
#monsterdon
#mastoween
#HackThePlanet
#tech #offsec #blueteam #obsidian #vivaldibrowser #linux #popos #infosec #networksecurity #cybersecurity #hacking #SOCanalyst #incidentresponse #threatintelligence #PurpleTeam #electronics #indieweb #permacomputing #retrocomputing #wearenameless #monsterdon #mastoween #hacktheplanet