Michael Cloppert

2K posts

Michael Cloppert banner
Michael Cloppert

Michael Cloppert

@mikecloppert

Director of global #CTI, scientist, engineer, SANS FOR578 author, jazz trombonist. Co-author of seminal 'kill chain' paper (https://t.co/Jx29GiHxbb).

Tampa, FL Katılım Temmuz 2009
300 Takip Edilen2.9K Takipçiler
Sabitlenmiş Tweet
Michael Cloppert
Michael Cloppert@mikecloppert·
I think of analysis as art and science: art in formulating questions and assessments; science in finding answers and validation.
English
0
14
26
0
Michael Cloppert retweetledi
Simon Willison
Simon Willison@simonw·
If you use "AI agents" (LLMs that call tools) you need to be aware of the Lethal Trifecta Any time you combine access to private data with exposure to untrusted content and the ability to externally communicate an attacker can trick the system into stealing your data!
Simon Willison tweet media
English
88
532
2.3K
654.9K
Michael Cloppert
Michael Cloppert@mikecloppert·
Do you know someone just starting their career in #CTI located in the Czech Republic? If so, please share this job posting with them to join our awesome team defending PwC's global network! (no, we cannot hire for this role outside of CZ) pwc.wd3.myworkdayjobs.com/Global_Campus_…
English
0
1
2
500
Michael Cloppert
Michael Cloppert@mikecloppert·
@markjx01 @ImposeCost Wow that was a long time ago but I definitely remember writing that fork. Very helpful back in 1999 (? I think ?) when AIM was how everyone communicated who wasn’t on IRC (aka less tech friends of ours).
English
0
0
1
24
Mark Jeanmougin
Mark Jeanmougin@markjx01·
@ImposeCost I hacked an IM aggregator with @mikecloppert so that you could send messages to people that were offline (it would queue and send when they came back online) We need aggregators for Teams, Discord, and Slack...
English
1
0
3
339
Michael Cloppert
Michael Cloppert@mikecloppert·
Although I cannot vouch for its complete accuracy, this is an incredible piece of work mapping relationships b/w every major ransomware group. github.com/cert-orangecyb…
English
0
0
0
253
Michael Cloppert retweetledi
CISA Cyber
CISA Cyber@CISACyber·
🌐🤝@CISAgov & global partners join forces to unveil Joint #Cybersecurity Advisory on Russia's FSB-backed 🐍 "Snake" Malware - a highly sophisticated cyber espionage tool. Arm your organization with our extensive 50-page advisory & stay protected!🛡️ cisa.gov/news-events/cy…
CISA Cyber tweet media
English
5
36
78
38.8K
Michael Cloppert
Michael Cloppert@mikecloppert·
“The pursuit of knowledge is hopeless, and eternal.” - Futurama. Thomas Kuhn would strenuously agree.
English
0
0
1
338
Michael Cloppert
Michael Cloppert@mikecloppert·
@colemankane I'll admit, I almost defaulted to that trope (which is such for good reason)
English
0
0
0
49
Michael Cloppert
Michael Cloppert@mikecloppert·
Dear literally everyone, PLEASE for the love of all things, stop defaulting to "was it a cyberattack?" for every major IT outage. No. It almost never is. With most irritable regards, Mike
English
0
2
17
1.2K
Allen Jones
Allen Jones@ajMSFT·
Just a short note to share that I retired from @Microsoft today after nearly 21 years. It was my dream career and wouldn’t trade a single moment or experience. I’ve no immediate plans. Downsize a little, travel a little, maybe see what life is like in a few different zip codes.
Allen Jones tweet media
English
16
2
193
0
Michael Cloppert
Michael Cloppert@mikecloppert·
@killchain Our daily stand-ups include a show and tell section and I can’t believe we hadn’t thought of this. It was the statement of the day for us hahaha
English
0
0
1
0
Michael Cloppert retweetledi
andrewshead@mastodon.social
[email protected]@andrewshead·
I can't rave about this tool enough. Humans are horrible at differentiating strings of numbers (i.e. IPs), but we're great at separating names/places. Which of these two log line outputs are easier to read? Which one helps you better mentally 'bucket' the IPs?
andrewshead@mastodon.social tweet media
English
1
2
8
0
Michael Cloppert
Michael Cloppert@mikecloppert·
2/ There is also a useful distinction from hacktivism, in that the individuals and groups are actively supporting one side of warring states.
English
0
0
0
0
Michael Cloppert
Michael Cloppert@mikecloppert·
Thought (1/): we've had vigilante justice for, like, ever. Now, with the internet and dependence of warring states on it, we have widespread vigilante warfare. I think this is usefully distinct from uprisings / insurgents / volunteers / guerilla warfare.
English
1
0
0
0
Michael Cloppert
Michael Cloppert@mikecloppert·
@markjx01 @yishan If you don’t go down rabbit holes, you aren’t an analyst. If you don’t bring a rope, you aren’t an experienced one.
English
0
0
0
0