Geo Warnagiris

472 posts

Geo Warnagiris

Geo Warnagiris

@GeoWarnagiris

cybersecurity analyst with a concentration in #tcpip, #nsm and #infosec, historian, writer, funny guy, scholar, statesman, living in the Burgh

Pittsburgh, PA USA Katılım Eylül 2012
876 Takip Edilen299 Takipçiler
Kate Taylor
Kate Taylor@Kate_H_Taylor·
KFC will test Chicken & Donuts for a limited time only in Norfolk/Richmond, VA and Pittsburgh
Kate Taylor tweet media
English
2.1K
2.6K
6.9K
0
Geo Warnagiris
Geo Warnagiris@GeoWarnagiris·
According to sysadminday.com, the celebration is "all day Friday, 24 hours, your own local time-zone". This should be changed to "the last Friday in July in all timezones you administer systems, even if this is more than 24 hours" IMO. Who's with me? #SysAdminDay
English
0
0
0
0
Geo Warnagiris retweetledi
DW
DW@DaveWestgard·
DW tweet media
ZXX
0
2
10
0
Geo Warnagiris
Geo Warnagiris@GeoWarnagiris·
Anthem indictment unsealed: "the defendants used extremely sophisticated techniques ... included the sending of specially-tailored 'spearfishing' emails with embedded hyperlinks" Sophisticated? Maybe. Extremely sophisticated? No. justice.gov/opa/press-rele…
English
0
0
0
0
Geo Warnagiris
Geo Warnagiris@GeoWarnagiris·
@eatingsecurity Reminds me of how the adoption of Windows server in the '90s/'00's was sold as making it easier to find server admins. It did, but quality and security suffered.
English
0
0
0
0
Geo Warnagiris retweetledi
School of Computing and Information
#AI has the power and potential to improve the future but at what cost? @PittCyber's screening of the thought-provoking documentary "Do You Trust This Computer?" is a week from today, featuring a panel discussion with SCI Associate Professor Adam J. Lee. cyber.pitt.edu/screening
School of Computing and Information tweet media
English
0
1
1
0
Geo Warnagiris
Geo Warnagiris@GeoWarnagiris·
@BlakeSobczak @digitalbond This quote is misleading. It says Russians are not scanning our systems. The preceding, omitted sentence is the key point. "The concern would be the destructive [as opposed to larcenous] mindset that the Russians have toward oil and gas pipelines."
English
0
0
2
0
Geo Warnagiris
Geo Warnagiris@GeoWarnagiris·
@anton_chuvakin When businesses calculate the ROI on paying a ransom, the "deters future criminals" variable is zero.
English
0
0
1
0
Dr. Anton Chuvakin
Dr. Anton Chuvakin@anton_chuvakin·
So how do we explain the trend that more organizations choose to pay ransomware ransoms? Criminals seen as better value than security vendors? :-)
English
33
16
78
0
Geo Warnagiris retweetledi
Archillect
Archillect@archillect·
Archillect tweet media
ZXX
10
184
891
0
Brian in Pittsburgh
Brian in Pittsburgh@arekfurt·
I do know that if you haven't started looking into making Windows machine accounts for domain controllers non-eligible for delegation (as @harmjoy described), you should probably get started looking at your near-term plausibility of implementing that. With some urgency.
English
1
0
0
0
Brian in Pittsburgh
Brian in Pittsburgh@arekfurt·
So my 2 very oversimplified critical takeaways (I think) from this: An attacker can: 1. Turn existing resource-based constrained delegation (RBCD) into unconstrained delegation, enabling danger there. 2. Or, as any domain user, just create a new service that uses RBCD then do #1.
Elad Shamir@elad_shamir

Check out my latest research "Wagging the Dog: Abusing Resource-Based Constrained Delegation to Attack Active Directory" New attack techniques and live 0days inside. MSRC’s response: "this is not an issue which will be addressed via a security update" shenaniganslabs.io/2019/01/28/Wag…

English
1
0
0
0