perox_

163 posts

perox_

perox_

@perox_

Katılım Mart 2010
156 Takip Edilen75 Takipçiler
perox_ retweetledi
Jake Williams
Jake Williams@MalwareJake·
If you're a @CrowdStrike customer and your machine is off, leave it that way. Something has caused blue screen loops with csagent.sys and it's, um, not good...
Jake Williams tweet media
English
37
197
1.1K
121.7K
perox_ retweetledi
/RootedCON
/RootedCON@rootedcon·
/RootedCON tweet media/RootedCON tweet media/RootedCON tweet media
ZXX
0
3
5
921
perox_ retweetledi
/RootedCON
/RootedCON@rootedcon·
🟣 “Triangulación proactiva de adversarios” con 👥 Lórien Domenech Ruiz y Javier García Guillén, de 16:30 a 17:30, en la sala 25.
Español
1
2
5
1.4K
perox_ retweetledi
Christopher Peacock
Christopher Peacock@SecurePeacock·
It's interesting to see CISA add procedures, commands, and behaviors into their IOC section. It's probably a good approach as many just ask for IOCs and anticipate atomic IOCs, like IP Addresses, but this could help atomic IOC based organizations evolve to focusing on behaviors. cisa.gov/sites/default/…
Christopher Peacock tweet media
English
1
28
124
23.6K
perox_ retweetledi
Sergio de los Santos
Sergio de los Santos@ssantosv·
Una banda de ransomware roba datos de una empresa. Días después, esa misma banda denuncia a la empresa ante la SEC (Comisión de Bolsa y Valores) por no declarar la brecha a tiempo. Las bandas protegen su negocio con las herramientas de las que disponen: ilegales y... legales.
vx-underground@vxunderground

Today DissentDoe reported that ALPHV ransomware group submitted an official SEC complaint against MeridianLink for them not disclosing the breach ... which was performed by ALPHV... ALPHV shared the official SEC complaint with DissentDoe More info: databreaches.net/alphv-files-an…

Español
5
54
141
39.8K
perox_ retweetledi
[NN2ed] s4ur0n
[NN2ed] s4ur0n@NN2ed_s4ur0n·
Una de las mejores CONs en España donde compartir experiencias, es @Sh3llCON ya en cartel para enero 2024 y promete simplemente con la web sh3llcon.es que será dura... Prepararos para Reinosa (Cantabria) en Enero y más detalles en la web..
Español
4
15
35
4.8K
perox_ retweetledi
Frank McGovern - INACTIVE
Frank McGovern - INACTIVE@FrankMcG·
SEC is charging SolarWinds CISO for their breach due to hiding and inaccurately painting their security posture picture. I probably know a few “people-leader CISO’s” that probably fall into this. Be warned. Know what you’re doing or let someone else lead. therecord.media/solarwinds-cis…
English
22
158
569
111.3K
perox_ retweetledi
Grzegorz Tworek
Grzegorz Tworek@0gtweet·
Yesterday I had a chance to speak at @TheHackSummit conference about the #DFIR value of an NTFS USN Journal. And I have invented a tool, literally on stage: a parser for the Journal, focusing on deleted files. With some recursive capabilities allowing you to recover full paths, even if the folder structure was deleted as well. Enjoy the source code, and the compiled exe, as usual: github.com/gtworek/PSBits…
Grzegorz Tworek tweet media
English
7
43
134
25.5K
perox_ retweetledi
Sh3llCON
Sh3llCON@Sh3llCON·
Sh3llCON 2024 cargando...
Sh3llCON tweet media
English
6
12
33
3.5K
perox_ retweetledi
Alex Xu
Alex Xu@alexxubyte·
How do companies ship code to production? The method to download the high-resolution PDF is available at the end. The diagram below illustrates the typical workflow. Step 1: The process starts with a product owner creating user stories based on requirements. Step 2: The dev team picks up the user stories from the backlog and puts them into a sprint for a two-week dev cycle. Step 3: The developers commit source code into the code repository Git. Step 4: A build is triggered in Jenkins. The source code must pass unit tests, code coverage threshold, and gates in SonarQube. Step 5: Once the build is successful, the build is stored in artifactory. Then the build is deployed into the dev environment. Step 6: There might be multiple dev teams working on different features. The features need to be tested independently, so they are deployed to QA1 and QA2. Step 7: The QA team picks up the new QA environments and performs QA testing, regression testing, and performance testing. Steps 8: Once the QA builds pass the QA team’s verification, they are deployed to the UAT environment, where the QA team, dev team, and even the product owner perform UAT testing. Step 9: If the UAT testing is successful, the builds become release candidates and will be deployed to the production environment on schedule. Here we might not want to deploy to all the users in one go to mitigate the change risks, so some techniques like feature toggle, canary deployment can be used. Step 10: SRE (Site Reliability Engineering) team is responsible for prod monitoring. They leverage a bunch of log-analyzing tools and process-tracing tools like ELK stack, Prometheus, and Skywalking. They report production issues to QA and dev teams, and teams need to fix them based on defined priority. – Subscribe to our newsletter to download the 𝐡𝐢𝐠𝐡-𝐫𝐞𝐬𝐨𝐥𝐮𝐭𝐢𝐨𝐧 𝐏𝐃𝐅. After signing up, find the download link on the success page: bit.ly/bytebytegoship…
English
97
1.5K
5.7K
1.1M
perox_ retweetledi
SkelSec
SkelSec@SkelSec·
And thus, new version of #pypykatz is out. On Github and PIP. This version also contains all improvements which were not yet made public due to Porchetta Industries agreement. 🥲 github.com/skelsec/pypyka…
English
3
8
37
6K
perox_
perox_@perox_·
#linux command to world destroyers @nixcraft: $ fallocate -l 10TB file.big
English
0
0
8
61
perox_
perox_@perox_·
[Part3] Some #IOC about #Ransomware #RansomHouse #Mario: - IP Address: 148.113.136.10 - IP Address: 185.194.57.83 - IP Address: 45.9.148.209 - IP Address: 51.222.86.79 - IP Address: 185.64.104.234
English
1
0
0
343
perox_
perox_@perox_·
[Part2] Some #IOC about #Ransomware #RansomHouse #Mario: - Filename: /tmp/mrAgent - Filename: /tmp/e_mario_esxi.out - IP Address: 79.132.135.198 - IP Address: 185.194.57.83 - IP Address: 141.255.162.218 - IP Address: 144.217.86.109
English
1
0
0
345