Rob
10 posts

Rob
@RobGeurtsen
Business leader | Founder | CISO | Venture Advisor | Board Member | Investor | Ret. Deputy CISO at Nike Inc. Views are 100% my own.
Katılım Haziran 2010
137 Takip Edilen96 Takipçiler
Rob retweetledi
Rob retweetledi

In #ADFS, attackers can manipulate the service process Microsoft.IdentityServer.ServiceHost.exe to execute payloads for persistence activity.
A possible #threathunting thesis is to detect anomaly child process execution under the AD FS service host process.

English
Rob retweetledi

⚡️ Supercharge your ability to discover whether an Indicator of Compromise is present in your network.
Join Erik Goldman on February 14th to learn how Hunters’ new IOC Search is setting a new standard for investigation tools.
linkedin.com/video/event/ur…
English
Rob retweetledi

Hunting and detecting malicious #OneNote notebook executions!
Detecting direct child process execution of abused binaries under the OneNote host process (onenote.exe) can cause FPs due to control policies that involve running existing scripts from disk or public shares.
English
Rob retweetledi

We couldn't be prouder of our @ybardayan!
YL Ventures@ylventures
LIVE from the #RSA2020 Innovation Sandbox contest! Our portfolio company @VulcanCyber is rocking it on stage! We couldn't be prouder of them for making the final cut as one of the #cybersecurity industry's most promising young startups (1/3)
English
Rob retweetledi

We are happy to share the Hunters is now officially a @CrowdStrike store partner! Go on and check it out. #RSAC #hreathunting #xdr
CrowdStrike@CrowdStrike
Update from #RSAC: @CrowdStrike rolls out new offerings and announces two new CrowdStrike Store app partners, @SafeGuard_Cyber and @hunters_ai aimed at helping customers to combat advanced threats and stop breaches ow.ly/iZ5G50ysPZV #cybersecurity
English
Rob retweetledi

Update: @CrowdStrike emphasizes #MSSP relationships. Unveils developer portal and store offerings. @SafeguardCyber & @hunters_ai engage. #Cybersecurity #RSAC #RSAC20 #RSAC2020 ow.ly/KI3w30qkD6z
English