Dag · @dagb
163 followers · 1627 posts · Server snabelen.no

Jobber du med infrastruktur (både fysisk og digital), beredskap, energiforsyning så lytt på fra nsm.no/hold-deg-oppdatert/podc

#podcast #nsm

Last updated 1 year ago

ITSEC News · @itsecbot
1330 followers · 35759 posts · Server schleuss.online

Key Network Questions -  I wrote this on 7 December 2018 but never published it until today. The following... taosecurity.blogspot.com/2023/

#nsm

Last updated 1 year ago

Militarnyi · @Militarnyi
851 followers · 1465 posts · Server social.kyiv.dcomm.net.ua

The U.S. State Department has made a determination approving a possible Foreign Military Sale to the Government of Latvia of Naval Strike Missile Coastal Defense System

mil.in.ua/en/news/foreign-mili

#latvia #usa #nsm #ashm

Last updated 2 years ago

Militarnyi · @Militarnyi
842 followers · 1372 posts · Server social.kyiv.dcomm.net.ua

Australia plans to launch its own production of guided missiles within the next two years, two years sooner than expected

mil.in.ua/en/news/australia-pl

#australia #pacificocean #China #nsm #indopacific

Last updated 2 years ago

VHG · @vgoller
35 followers · 6094 posts · Server nrw.social

@dufthummel das sieht nach aus. Oder ist das

#nsm #fdp

Last updated 2 years ago

Josh Lemon · @joshlemon
130 followers · 31 posts · Server infosec.exchange

If you're keen to learn more about or 's, blogs like this which walk you through using , with a malicious sample from the wild, are great to practice your skills.

blog.securityonion.net/2023/02

#networkforensics #nsm #securityonion #dfir

Last updated 2 years ago

Militarnyi · @militarnyi_en_mirror
132 followers · 1119 posts · Server nafo.uk

The first Royal Navy warship to receive Norwegian NSM anti-ship missiles became the HMS Somerset (F 82) Type 23 frigate mil.in.ua/en/news/first-britis

twitter.com/militarnyi_en/stat

Reposted from Twitter by @nafobot

#uk #navy #type23 #frigate #nsm #harpoon #Ukraine

Last updated 2 years ago

Militarnyi · @Militarnyi
756 followers · 1083 posts · Server social.kyiv.dcomm.net.ua

🇬🇧Першим кораблем Королівського флоту Великої Британії, який отримав норвезькі протикорабельні ракети , став фрегат HMS Somerset

Нові ракети приходять на зміну американським Harpoon

mil.in.ua/uk/news/na-pershyj-b

#nsm #флот #великабританія #світ

Last updated 2 years ago

Richard Bejtlich · @taosecurity
1982 followers · 125 posts · Server infosec.exchange

@zeek matters because it is literally the codification of the security principle "prevention eventually fails."

Defenders often do not know how adversary activity will specifically manifest on the network.

By summarizing traffic, extracting key data, and deriving insights, Zeek provides the network evidence defenders need to interdict intruders before they accomplish their mission.

Note: Zeek offers 2 of 4 elements of data (transaction logs and extracted files). also requires alerts and pcap. Furthermore, NSM data works with third party sources, infrastructure/application logs, and endpoint data.

#networksecuritymonitoring #nsm

Last updated 2 years ago

Wes Lambert · @weslambert
452 followers · 60 posts · Server infosec.exchange

What do y'all think about a detection series including and , illustrating the compliments and differences of host and network-based detection and response?









#c2 #securityonion #velociraptor #bruteratel #cobaltstrike #dfir #esm #havoc #infosec #nsm #sliver #sysmon

Last updated 2 years ago

Militarnyi · @militarnyi_en_mirror
132 followers · 1119 posts · Server nafo.uk

In 2023, the Ministry of Defense of Latvia plans to sign a contract for the purchase of Naval Strike Missile (NSM) coastal defense systems mil.in.ua/en/news/latvia-plans

twitter.com/militarnyi_en/stat

Reposted from Twitter by @nafobot

#latvia #nato #nsm #missile #Ukraine

Last updated 2 years ago

da_667 · @da_667
3107 followers · 195 posts · Server infosec.exchange

Interestingly enough, the second bot, GoTrim uses a very unique user-agent for doing external IP address checks against a number of "what's my IP address" services, with a very unique user-agent: go-external-ip

We already have a rule for that -- 2030468 go-external-ip library User-Agent

#malware #ransomware #threatintel #iocs #iocexchange #snort #suricata #nsm #threathunting #gotrim #ciaransomware

Last updated 2 years ago

Scott Hall · @foo
59 followers · 66 posts · Server infosec.exchange

Where'd them packets go?

#happyholidays #netsec #blueteam #nsm

Last updated 2 years ago

Scott Hall · @foo
70 followers · 76 posts · Server infosec.exchange

Where'd them packets go?

#happyholidays #netsec #blueteam #nsm

Last updated 2 years ago

Militarnyi · @militarnyi_en_mirror
132 followers · 1119 posts · Server nafo.uk

The Norwegian company Kongsberg Defense & Aerospace AS has been awarded a 1 350 million NOK ($138,650,000) contract by Raytheon Missiles & Defense for delivery of the Naval Strike Missile Coastal Defence System to Romania mil.in.ua/en/news/romania-orde

twitter.com/militarnyi_en/stat

Reposted from Twitter by @nafobot

#romania #nsm #kongsberg #Ukraine

Last updated 2 years ago

da_667 · @da_667
3028 followers · 460 posts · Server infosec.exchange

In honor of some unique activity I've seen recently, I put together some rules today that will be in the ET HUNTING category. These are rules that will capture output from Windows terminal banners (cmd.exe and powershell), as well as output from the powershell command Get-ComputerInfo encoded in decimal notation.

So decimal notation is nothing new -- most of you have probably observed powershell, js, cscript, vbscripts, etc. attempting to load an array of decimal encoded hex values and transform it into raw hex so that it becomes an executable payload, as a part of a multi-stage attack, or to evade network/host-based defenses.

Recently, I was shown that there are tools that can use decimal encoding for command outputs. Its easy enough to decimal encode input, made even easier for lazy asses like me with cyberchef, so I made some rules for some relatively common bad output you probably don't want to see going outbound, and just decimal encoded it.

Also, I hope you enjoy dynamic DNS hunting, as our ruleset for dynamic DNS providers has grown explosively thanks to efforts from the rest of our team.

#nsm #snort #suricata #malware #threatintel #obfuscation

Last updated 2 years ago

📰 Hot off the press 📰
---------------------------------------
I wrote this article for PowerGrid International magazine and it is to help folks with tuning their ICS /OT / SCADA network security monitoring alerts. 🛠️📉 You don't have to reinvent the wheel!

***If ICS NSM is in your responsibility, please read this article (link below) I would love to get your feedback.***

Documentation about tuning ICS NSM systems are rare. ICS NSM solution documentation tends to focus on how to turn on and off the baseline feature, and not go into specifics about how to fine tune the system.

If you buy an ICS NSM solution and forget it, it will be useless. If a vendor says their sensor/IDS requires no tuning, they are lying to you. An unmanaged and untuned ICS NSM or IDS will create floods of alerts, nuisance alerts, and contributes to alert fatigue for your engineers and SOC analysts.

Thank you!

📰: When fine-tuning your cybersecurity alerts, it’s best to focus on the basics
power-grid.com/td/when-fine-tu

#ics #ot #scada #icssecurity #otsecurity #networksecuritymonitoring #nsm #ids #soc #socanalysts #blueteam #tuning

Last updated 2 years ago

Mr. Lynx · @mrlynx
3 followers · 2 posts · Server masto.es

FFAA actualiza su arsenal con la compra de misiles para las fragatas & y para la flota de .

#espana #nsm #f100 #f110 #brimstone #eurofighter #toottest

Last updated 2 years ago

infosec-jobs.com · @infosec_jobs
1234 followers · 14505 posts · Server mastodon.social