Aaron Boyd

2.8K posts

Aaron Boyd banner
Aaron Boyd

Aaron Boyd

@ics_blitz

Experienced OT Cybersecurity Generalist: Ensuring Robust Protection for Critical Infrastructure & Industrial Control Systems.

Katılım Mart 2017
613 Takip Edilen1.3K Takipçiler
EZ
EZ@IAMERICAbooted·
The weekend was not long enough lol
English
3
0
13
1.1K
Aaron Boyd
Aaron Boyd@ics_blitz·
Why use the person who can hit grand slams when you've got plenty of people who can bunt?
English
0
0
1
91
Aaron Boyd
Aaron Boyd@ics_blitz·
👀 hope to see you there!
Aaron Boyd tweet media
English
0
1
1
135
Aaron Boyd retweetledi
BSides Calgary
BSides Calgary@bsides_calgary·
📣 BSides Calgary 2025: Keynote Announcement Update! 📣 We're very excited to update our last keynote announcement, an amazing keynote panel! ICS Security Management, a Business Perspective from Former Front-liners With ICS Experts: Ashif Samnani, Pamela Pouliot, Austin Scott, Paul Smith, Herman Lee, and Paulo Silva, VCP PCNSE hosted at Bow Valley College Annual threat reports from industry thought leaders like Dragos, Waterfall and Mandiant confirm that cyber-physical attacks are increasing at an exponential pace. While smaller in raw numbers, the consequences can be significantly higher. The increase is only part of the story and just one more aspect to the risk management challenges facing decision makers responsible for businesses heavily reliant on industrial control systems. BSides audiences are most likely familiar with the current and emerging ICS threat landscape. Less understood is how these threats are balanced against the multitude of other operational realities such as high capital costs, workforce skill management, regulatory oversight, operational safety, reliability and financial obligations to shareholders. Get your tickets here for an event you don't want to miss! showpass.com/bsidescalgary2… #bsidescalgary #bsides #cybersecurity #speakers
BSides Calgary tweet media
English
1
2
1
188
Aaron Boyd
Aaron Boyd@ics_blitz·
@dnvr_is_burning Taco Bron closed as well. Yesterday was their last day. Damn shame to compare the area now to what it was even 10 years ago..
Aaron Boyd tweet media
English
1
0
2
82
Recovering Woke
Recovering Woke@dnvr_is_burning·
Another 16th St restaurant is closing: Zoe Ma Ma* 16th St has so many vacancies right now & I don't think the $175m in tax $ we put into renovations will make one bit of difference There are so many ppl who used to come downtown and won't anymore... that's what needs to change
English
128
74
740
18.6K
Aaron Boyd
Aaron Boyd@ics_blitz·
@d0rkph0enix Flaccid lap pinkies. You never cease to amaze and if you ever decide to kickstart one of those daily calendars with jokes or thoughts of the day, I’ll gladly support.
English
0
0
6
114
Nick
Nick@JetBlk·
@ics_blitz “I know you hack REEEEEEEEEEE”
English
1
0
1
67
Nick
Nick@JetBlk·
This game changed everything for me in a similar way as Tobias. It is when I started coding, designing, and many other things with a computer that led me to where I am today.
English
1
0
3
159
Adam Sandler
Adam Sandler@AdamSandler·
Happy Chanukah! Merry Christmas! Happy Holidays! And Happy Gilmore to all!!!!!!
English
1K
7.3K
63.8K
3.5M
Aaron Boyd
Aaron Boyd@ics_blitz·
@NathanMcNulty @kerberoasting @EricaZelic Just for my own confirmation, this is only displaying when MFA is reset (i.e., force user to re-enroll) or a user enrolling in MFA for the first time, correct? It wouldn't necessarily capture or display when a new method is added since it's not necessarily a registration event?
English
2
0
2
223
Nathan McNulty
Nathan McNulty@NathanMcNulty·
@ics_blitz @kerberoasting @EricaZelic This data is recorded in the audit log, never seen the Entra audit logs missing data (unlike UAL) The data from the Entra Audit logs is exposed both in the Entra portal as a nice dashboard and via the Reports API Portal: #view/Microsoft_AAD_IAM/AuthenticationMethodsMenuBlade/~/RegistrationAndResetLogs/fromNav/Identity" target="_blank" rel="nofollow noopener">entra.microsoft.com/#view/Microsof… API: learn.microsoft.com/en-us/graph/ap…
Nathan McNulty tweet media
English
2
0
4
409
Aaron Boyd
Aaron Boyd@ics_blitz·
@NathanMcNulty @kerberoasting @EricaZelic Can't say that I've seen a case where the logs were just missing from Entra, but the limitation of only being able to display the last month is mainly what I was referring to. Like you also said though, UAL on the other hand.. who knows 😅
English
1
0
1
51
Nathan McNulty
Nathan McNulty@NathanMcNulty·
@ics_blitz @kerberoasting @EricaZelic Also of note, if events were missing from the Entra audit logs, no other solution is going to get if the source didn't If you ever know for sure that these events are missing from the Entra audit logs, that's a major issue that warrants tickets and hitting up some MS folks :p
English
1
0
1
193
Aaron Boyd
Aaron Boyd@ics_blitz·
@EricaZelic @kerberoasting @NathanMcNulty Yeah, natively in azure it usually won’t let you view past 30 days and querying data via workbooks is wildly inefficient and inaccurate. It’s why I just ship logs to another log aggregator. Much less of a headache and has multiple different logs in a single pane of glass.
English
0
0
3
141
Aaron Boyd
Aaron Boyd@ics_blitz·
@techspence Not impossible. Takes time, confidence, and some outside the box thinking. I’ve done it at current employer and former ones with success.
English
0
0
1
74
spencer
spencer@techspence·
Attackers obtaining local admin privileges on end-user systems is a given. Now what...design your security around that fact. Doesn't matter if you use LAPS or Tiered. Local admin access by threat actors is inevitable.
English
11
17
173
18.3K
Aaron Boyd
Aaron Boyd@ics_blitz·
@hddenver1 @jeffhunt Well, I’m pleased to say you won’t be shocked then. None of us are happy about this or pleased. We do speak up, we do vote, we do write letters, we do voice concerns, they just don’t listen. They are chasing dollars and ensuring they get to keep riding the gravy train next term.
English
0
0
2
27
Jeff Hunt
Jeff Hunt@jeffhunt·
Denver is in real trouble. It's not pulling in sales tax revenue because no one wants to go there. To deal with drug-addicted homelessness, there should only be three options: 1. Get help. Connect with Denver Rescue Mission, Catholic Charities, or Step Denver. 2. Leave the city. 3. Go to jail for drug possession. This is compassionate. The government needs to intervene. No more living on streets drug addicted - it harms the community, local businesses, and the individual.
English
137
247
1.5K
45.6K
Barstool Sports
Barstool Sports@barstoolsports·
The Ohio State band literally shat all over Michigan
English
205
491
12.3K
3M