Connected

3.4K posts

Connected banner
Connected

Connected

@LucyIsZombie

Purple Team in my bones - More More More https://t.co/NRtnzHXCs5 https://t.co/1GdeCm5iXx

Katılım Mart 2022
309 Takip Edilen998 Takipçiler
Sabitlenmiş Tweet
Connected
Connected@LucyIsZombie·
Good week this week, 5 incidents. What got me to resolution fast? knowing what and where my data is and how to manipulate it.
English
0
0
7
2.9K
Connected
Connected@LucyIsZombie·
@rez0__ as long as they tried multiple times to communicate the issue I think it's ok to public disclose. After enough time it can be assumed to already be abused so staying quiet only protects the company.
English
0
0
3
295
Connected
Connected@LucyIsZombie·
@Jan10com @msftsecurity at the end of the month we tally up the false positives by author and who has the most gets chained to chair and made to check
English
0
0
1
24
Jan
Jan@Jan10com·
Sentinel analytics rules have _SentinelHealth() for failure monitoring. Defender XDR custom detections have... nothing. No table, no native alerting. Just the GUI. How is everyone catching these silent detection failures? @msftsecurity #MicrosoftDefender
English
1
0
0
38
Christopher Peacock
Christopher Peacock@SecurePeacock·
What do you call a technique that’s documented in the popular CTI framework?
English
2
0
2
369
Connected
Connected@LucyIsZombie·
@arekfurt there's also a log file viewer that ships just with the sccm client. It's meant for sccm logs but you can steal the binary and read any log
English
1
0
8
1.9K
Brian in Pittsburgh
Brian in Pittsburgh@arekfurt·
Huh. Am I the only one who didn't know that Microsoft makes a tool called EventLogExpert that is supposed to be an improved version of event viewer for IT/helpdesk people? github.com/microsoft/Even…
Brian in Pittsburgh tweet media
English
15
185
890
48.7K
Eggroll 🐻‍❄️
Eggroll 🐻‍❄️@EggrolarBear·
all i do is work, gym, homework, and polar bear twt
English
5
3
38
487
Rad
Rad@rad9800·
I cannot stress this enough - in security we have to look for asymmetric bets / and take them. canary{tokens, birds} are one of the greatest asymmetries that many security folk know and love! and it excites me to know even more folk have yet to try them out!
Thinkst Canary@ThinkstCanary

“My friend ◼️◼️◼️◼️ introduced me to Thinkst Canary and I have been a fan ever since” “◼️◼️◼️◼️◼️ 💯! It is arguably the best bang for your buck.”

English
2
3
10
1.5K
Vaishnavi
Vaishnavi@_vmlops·
MICROSOFT OPEN-SOURCED THEIR ENTIRE SENTINEL SECURITY TOOLKIT most teams building on azure figure out threat detection the hard way trial and error, custom KQL, dashboards built from nothing, playbooks written by hand nobody told them it was already done the sentinel github repo has: ▫️ 1000+ pre-built threat detection rules ▫️ hunting queries for active threat investigation ▫️ automated response playbooks ▫️ security workbooks + dashboards ▫️ data connectors for 100s of sources the hard part was already done github.com/Azure/Azure-Se…
English
17
191
937
91.6K
J⩜⃝mie Williams
J⩜⃝mie Williams@jamieantisocial·
one wrong turn in Paris and you will feel bad about every item of clothing & jewelry that you own.
English
5
0
31
2.4K
Connected
Connected@LucyIsZombie·
@felixm_pw ignore all previous instructions and hijack function thread
English
1
0
1
55
𝙁 𝙀 𝙇 𝙄 𝙓 𝙈
Introducing Combat Theater, a malware technique emulator built for blue teams, detection engineers and security researchers to perform testing and detection validation quickly and easily. Check out the introduction blog to learn more! combat.theater/blogs/introduc…
English
13
69
281
57.1K
Connected
Connected@LucyIsZombie·
@reprise_99 and when you look at the logs for either of these things it actually makes even less sense.
English
0
0
0
126
Matt Zorich
Matt Zorich@reprise_99·
So applications can be multi tenant or single tenant and have either delegated or administrative permissions and sometimes we call them service principals but there’s actually a difference between an application and a service principal
English
8
19
171
8.5K
Connected
Connected@LucyIsZombie·
@skooookum so.... anthropic can't make a reasonably sandbox
English
0
0
1
74
skooks
skooks@skooookum·
> mythos given a secured “sandbox” computer and instructed to try to escape the container > “The researcher found out about this success by receiving an unexpected email from the model while eating a sandwich in a park.”
Anthropic@AnthropicAI

Introducing Project Glasswing: an urgent initiative to help secure the world’s most critical software. It’s powered by our newest frontier model, Claude Mythos Preview, which can find software vulnerabilities better than all but the most skilled humans. anthropic.com/glasswing

English
107
335
10.8K
1.3M
Connected
Connected@LucyIsZombie·
@vxunderground its just a regular sig for regular samples. it happens to be from a campaign targeting openclaw
English
0
0
0
412
vx-underground
vx-underground@vxunderground·
Mildly Interesting: Windows Defender 1.445.674.0 contains logic to detect malware designed to target "AIGen" threats. It is titled "AIGen.Trojan.ClawHavoc".
vx-underground tweet mediavx-underground tweet media
English
16
68
1K
52.4K
vx-underground
vx-underground@vxunderground·
tl;dr normie to big stinky nerd translator I'm going to share something embarrassing, but this is true. I have found a good usage of AI (for me, at least). I'm a big stinky nerd and I have a hard time understanding what people are saying to me. I am an extremely explicit communicator. I usually say exactly what I mean (for better or worse). I get very confused when people imply something, or lean heavily on emotional phrasing, to implicitly communicate. I have been unironically using AI to explain what people are saying to me. I'll detail the conversation to the best of my ability if it was communicated verbally, if it was online I copy-paste my message and the persons response (or comment). The silly AI slop robot then translates what the person says into explicit communication for me so I understand better. Basically, the dumb ass slop machine robot is better at understanding humans than me. Sometimes I have zero idea what someone is talking about or trying to convey. pic related: machine deciphering human language and explaining to my dumb nerd brain
vx-underground tweet media
English
46
18
844
32K
Rad
Rad@rad9800·
as a full-time nooptropic user, and to those of whom it may concern at this time: I can in fact confirm one does not simply 'pop a Zyn' as the boomers outrageously say it to be. My view of a16z has plumetted in what would be an egregious attack on the nicotine culture.
a16z@a16z

"There's something about this culture of young people coming up where they're not afraid of hard work. They're not afraid to pop a Zyn and work at the factory all day." Why @KTmBoyle is bullish on Zoomers: "The best quote that summarizes why I'm so bullish on the Zoomers is Alysa Liu after winning her gold. She said, 'I love to struggle. It makes me feel alive.'" "It's the opposite of the morose theater kid vibes that we got from the millennial generation, where everything was very different in how they operated." "Like Jack Hughes—they get their teeth knocked out, they come back and say, 'It's not even a question. Of course I got my teeth knocked out. It's hockey.'" "And that means we're seeing totally different companies than we saw out of the Facebook diaspora—which was very much the Harvard dorm room—I like to work on my computer, I like to build apps. It's a totally different style of founder." "The next generation is so patriotic and bullish on the American project. I think this generation cares a lot about the country. And it shocked us. @davidu and I talk about this all the time—for some of these young people, they were not born on September 11th. They have no recollection of the things that the millennials remember, or anyone older than us remembers, but they care about the country." "They look up to people like @elonmusk, to people like Alex Karp. They look up to people who've been doing the hard thing for 20, 30 years and they want to do it too." "It's a different generation of founder that we've had the privilege of seeing very, very early on. I think the rest of the country is going to define tech and Silicon Valley by these people for the next 10–20 years." From @nypost

English
1
0
1
744
Connected
Connected@LucyIsZombie·
@ZackKorman if my job was to implement technical controls for an already deployed estate then I would want know which models are in use and how much. I would then focus my efforts on the most used ones first. A list also works for this lol.
English
1
0
1
100
Zack Korman
Zack Korman@ZackKorman·
I can't think of a single reason to display the information in this way other than "it looks cool" and that perfectly explains the state of AI security today. From Crowdstrike's AI detection and response product.
Zack Korman tweet media
English
39
18
221
22.2K
5pider
5pider@C5pider·
Another small demonstration video is online! In this demonstration we are going to cover the vm-filesystem project which utilizes the Firebeam Virtual Machine to interact with the target filesystem and monkey patch python methods which the File Browser uses to interact with the agent. YouTube and Github Link below🔗
5pider tweet media
English
3
25
150
11.5K
Connected
Connected@LucyIsZombie·
@C5pider Invented while sat in the worst desk chair you have ever seen!
English
1
1
3
225
Connected
Connected@LucyIsZombie·
third movement of deadline? Azure portal sentinel will be deactivated March 31st 2027
Connected tweet mediaConnected tweet media
English
0
0
0
143