t3chX
2 posts

t3chX
@rsrdjan
Security researcher & Malware analyst @ Sectreme
Bosnia and Herzegovina Katılım Eylül 2022
35 Takip Edilen1 Takipçiler
t3chX retweetledi

I’m not sure people realize what they actually need to do.
Once a 0day goes public and at least one threat actor has used it to exploit thousands of devices - and then a list of affected systems leaks -
PATCHING IS NOT ENOUGH.
If you take security seriously, you must run a compromise assessment to check whether the device and other systems in your network have already been breached.
When you find the front gate of your castle wide open and know it’s been that way for weeks, just closing it isn’t enough. You need to check if:
- Someone has already walked in
- Your secrets have been stolen
- A rope ladder is hanging from the walls
- Or worse—the king has been assassinated.
Treat this like the security incident it is.
English



