Ian Hellen

531 posts

Ian Hellen banner
Ian Hellen

Ian Hellen

@ianhellen

Principal Dev, Microsoft Threat Intelligence Center Author/maintainer of #msticpy and #msticnb Python packages for CyberSec.

Seattle, WA Entrou em Ekim 2010
212 Seguindo1.9K Seguidores
Ian Hellen
Ian Hellen@ianhellen·
MSTICPy v2.17.0 released - new RRCF outlier detection - AWS extension for Prisma Cloud AWS - Update Defender Auth to OAuth v2 and fix bugs - Python 3.12 support More details here github.com/microsoft/msti… @msticpy
Ian Hellen tweet media
English
1
4
3
277
Ian Hellen retweetou
msticpy
msticpy@msticpy·
MSTICPy 2.11.0 released This minor release includes: - Better handling of large/split queries for MS Sentinel - Updated support for installing MSTICPy in a Conda environment - Updates for future pandas support github.com/microsoft/msti…
msticpy tweet media
English
0
6
10
1.1K
Ian Hellen
Ian Hellen@ianhellen·
@Cyb3rMonk To be fair, it's a really difficult problem. Compared with GitHub copilot a) there isn't the same huge repository of KQL queries b) the schema is variable (unlike a std language like Python, which has a more constrained set of keywords). Most KQL is about schema more than syntax
English
0
0
1
173
Mehmet Ergene 🔸
Mehmet Ergene 🔸@Cyb3rMonk·
I keep hearing Security CoPilot's KQL capabilities are quite a failure. How is your experience?
English
4
0
3
4.8K
Ian Hellen retweetou
Roberto Rodriguez 🇵🇪
Roberto Rodriguez 🇵🇪@Cyb3rWard0g·
🌟Happy to see the community coming together and taking some of their time from their busy schedules to share and learn something new with others ❤️ #InfosecJupyterthon @OTR_Community Join us! 🚀 🔴Day 1 Live Stream: aka.ms/JupyterthonLiv… 🎤 Agenda: infosecjupyterthon.com/2024/agenda.ht…
InfoSec Jupyterthon@jupyterthon

@Cyb3rWard0g 🌍🔍 Breaking Down Our Attendees at #Jupyterthon by industries, experience levels, locations

English
0
8
16
3.5K
Ian Hellen retweetou
Ian Hellen
Ian Hellen@ianhellen·
Pioneering work in at-scale use of notebooks in Infosec at Secureworks. Also friend of and contributor to @msticpy - don't miss this!
InfoSec Jupyterthon@jupyterthon

🚨Mark your 🗓️ Feb 15-16! #InfosecJupyterthon Online🔴 📢Keynote: Barn Raising: Building a Community Around Jupyter Notebooks for DFIR, SecOps, and Detection Engineering Teams 🌟@detectdotdev, Principal Security Researcher @Secureworks 👉 Register: aka.ms/JupyterthonReg…

English
0
0
2
364
Ian Hellen
Ian Hellen@ianhellen·
@msticpy Note: the graphic showing in the tweet is the release page for MSTIC notebooklets. MSTICPy is at release 2.10.0 - it hasn't revered 3 years 😁
English
0
0
0
47
Ian Hellen
Ian Hellen@ianhellen·
#Infosec #Jupyterthon 2024 Back to welcome in the new year. We're looking for speakers, so get your thinking caps on and cool demos at the ready. 🎇 Also looking for input on the kinds of content that you'd like to see. 👷‍♀️➡️🔣 Check out @Cyb3rWard0g's announcement for links.
InfoSec Jupyterthon@jupyterthon

🚨 The #Infosec #Jupyterthon is back 📺! 🔥 🗓️February 2024! ❄️🔥Your opportunity to share your curiosity and inspire others🌎! @OTR_Community 🚀 Call for Notebooks (Dec 15th, 2023 - Jan 15th, 2024) forms.office.com/r/bKAyTRjjas 📢 Help us shape the event! forms.office.com/r/s8v9aQT5YU

English
0
2
5
450
Ian Hellen
Ian Hellen@ianhellen·
Hmm - just noticed that @msticpy blew past quarter of a million sometime in the last couple of months! (ok, I know pandas does that in a day😁 but it's big deal for us 🏆) pepy.tech/projects/mstic…
Ian Hellen tweet media
English
2
2
10
792
Ian Hellen
Ian Hellen@ianhellen·
MSTICPy 2.9.0 on PyPI Also includes some great guidance and scripts for packaging msticpy for use in isolated environments. #installing-for-isolated-or-semi-isolated-environments" target="_blank" rel="nofollow noopener">msticpy.readthedocs.io/en/latest/gett… (thx Chris Cianelli!)
msticpy@msticpy

MSTICPY 2.9.0 released Includes new Threat Intel provider IPQualityScore and updated M365D to use MS Graph API for hunting queries. Fixes to startup, Synapse compat issues, Entities and more. See the release notes for a full rundown github.com/microsoft/msti…

English
0
0
2
424
Ian Hellen
Ian Hellen@ianhellen·
@2xyo Not sure if some notebook environments like vscode, colab, pycharm, even use notebook pypi package
English
0
0
0
77
2*yo
2*yo@2xyo·
@ianhellen Hi, great release :) Just a question, why notebook package is not in dependencies (even not in an extra part of setup.py)?
English
2
0
1
49
Ian Hellen
Ian Hellen@ianhellen·
@2xyo Msticpy doesn't directly depend on the notebook package. It should need even ipython but it does use some ipython functions if available.
English
0
0
0
25