PC

17.8K posts

PC banner
PC

PC

@pchobbit

Talos Incident Response global leader by day - former CISO, Risk Management, etc. Gamer, RPG. travel enthusiast by night -The views expressed are my own

@pchobbit.bsky.social Katılım Ocak 2009
1.7K Takip Edilen1.2K Takipçiler
alice
alice@blueweekendss·
had a dream last night that wolf alice announced their new album
English
1
1
35
5.2K
PC
PC@pchobbit·
Going private this weekend, go find me elsewhere
English
0
0
4
110
Jen 🍋 LemonKiwi
Jen 🍋 LemonKiwi@LemonKiwi_·
💛 it was always about the journey, my love for games, and the people we cast for. But this still really means a lot. I'm grateful
Jen 🍋 LemonKiwi tweet media
English
48
10
811
15.6K
PC
PC@pchobbit·
@LitMoose Chris Sanders, Xintra (amazing for O365/Azure goodies), Spectre Ops, and 13cubed. Good on you for supporting training for your team!
English
0
0
0
93
The Haag™
The Haag™@M_haggis·
PowerShell math:
The Haag™ tweet media
English
4
0
16
1.8K
PC retweetledi
Rachel Tobac
Rachel Tobac@RachelTobac·
Fun to work with @Google on their latest Security white paper! My fave quote: “Folks throw money at a super expensive platform, but then don’t have a password manager for the team! It’s like spending money on ballistic windows but your door is wide open.” services.google.com/fh/files/misc/…
Rachel Tobac tweet media
English
3
17
110
7.8K
PC retweetledi
Dr. Anton Chuvakin
Dr. Anton Chuvakin@anton_chuvakin·
I remain as adamant as before that "humanless, full-auto #SOC" is not coming any time soon, BUT I sense that we are close to replicating the quality of shitty, low-cost MSSP/MDR with machines alone, no humans needed... So, shitty, low-cost MDRs beware, you business may be toast.
English
19
25
163
22K
PC retweetledi
The Haag™
The Haag™@M_haggis·
🔍💻 PowerShell Pro Tip! 💻🔍 Ever wondered what app opens specific file extensions on your Windows machine? 🤔 Sure, it’s not new, but it’s super handy! 💪 Use this PowerShell magic to find file extensions and their associated apps (like finding out `.rdp` opens with `mstsc.exe`)! 🚀 ``` $associations = @() $registryPaths = @( "HKLM:\Software\Classes", "HKCU:\Software\Classes" ) foreach ($path in $registryPaths) { Get-ChildItem $path | ForEach-Object { if ($_.PSChildName -like ".*") { $extension = $_.PSChildName $progId = (Get-ItemProperty -Path "$($_.PSPath)" -ErrorAction SilentlyContinue).'(Default)' if ($progId) { $commandPath = (Get-ItemProperty -Path "$path\$progId\shell\open\command" -ErrorAction SilentlyContinue).'(Default)' $associations += [PSCustomObject]@{ Extension = $extension ProgID = $progId AssociatedApp = $commandPath } } } } } $associations | Out-GridView -Title "File Extensions and Associated Applications" ``` gist.github.com/MHaggis/a5b0af… Hit enter & watch as the magic unfolds! 🎩✨ Explore the full list in a GUI to see extensions + their apps! Because sometimes… knowing is half the battle 🛡️💡 🖥️🐱‍💻
The Haag™ tweet media
English
4
32
166
19.7K
Pam Keith, Esq.
Pam Keith, Esq.@PamKeithFL·
Soooo….the GOP is planning to throw thousands of vets off of VA health care (while also repealing the ACA), and slashing VA benefits and pensions. To my fellow vets, what’s your plan when that happens?
English
4.4K
5.7K
28.3K
2.3M
PC
PC@pchobbit·
@JenMsft beep boop :)
English
0
0
1
38
Jen Gentleman 🌺
Jen Gentleman 🌺@JenMsft·
Failing a captcha, thinking to myself, oh god - is this it? Is this how I discover I'm really a bot?
English
24
3
133
6K
PC retweetledi
Chris Sanders 🔎 🧠
Chris Sanders 🔎 🧠@chrissanders88·
Investigation Scenario 🔎 You’ve discovered a Windows 10 host placed in the wrong AD OU. As a result, WSUS did not pick it up for automatic updates for at least two years. What do you look for to investigate whether it has been compromised? #InvestigationPath #DFIR #SOC
English
6
9
41
5.7K
PC retweetledi
DirectoryRanger
DirectoryRanger@DirectoryRanger·
Invoke-SMBRemoting. utilizes the SMB protocol to establish a connection with the target machine, and sends commands (and receives outputs) using Named Pipes. by @L3o4j github.com/Leo4j/Invoke-S…
English
0
27
65
3.8K
PC
PC@pchobbit·
The problem I have with AI is that the implementations are attempting to replace critical thinking with a poor replacement. It's not going to work, it causes people to stop learning or trying to be able to critically think, write, etc. and without their crutch they are useless.
English
0
0
0
77
PC retweetledi
Nasreddine Bencherchali
Nasreddine Bencherchali@nas_bench·
New Sigma release r2024-11-10 is available for download 🌟 17 New Rules 🛡️ 35 Rule updates 🔬 4 Rule Fixes This release includes rules covering - Suspicious .RDP file creation by Outlook and other uncommon processes. - IIS config tampering. - PowerShell Web Access abuse. - Antivirus cheat sheet updates And more 🔥 Check the full change log and start exploring this, by downloading the latest release -> github.com/SigmaHQ/sigma/… Also keep an eye for the next release soon, as I go through the rest of the PRs. Thanks to the many contributors that helped shape this release, specifically ahmedfarou22, bharat-arora-magnet, BlackB0lt, CheraghiMilad, dan21san, @defensivedepth, @deFr0ggy, djlukic, @frack113, fukusuket, ionsor, jaegeral, @imlordofthering, Koifman, Mahir-Ali-khan, @MalGamy12, @M_haggis , Milad Cheraghi, @cyb3rops , ruppde, @AltgeltMax , swachchhanda000, @Kostastsale , wieso-itzi, @X__Junior
Nasreddine Bencherchali tweet media
English
0
36
108
7.3K