ph
27.5K posts

ph
@WinPm_
Security Researcher/DFIR/RE......he/him mexican-american veteran
شامل ہوئے Haziran 2013
411 فالونگ661 فالوورز

@pagb666 @PolcoDio61896 @warcraftstats That’s why we judge it only relative to itself. There’s a whole community behind Console. BattleNet is what YOU are familiar with, but not everyone.
English

@PolcoDio61896 @warcraftstats I think that, in itself, kindve tells that story. It JUST hit a new ATP, and it’s not even that high.
English

@warcraftstats Everybody saying Diablo Is doing bar yet It quietly broke it's ATP earlier today

English

@juemrami @warcraftstats That may be because the point was not about art directions, just a thought.
English

@warcraftstats this is so bad faith because you could have literally remade the set on the left to give an actual comparison of the art directions.
But nah gotta peddle that "wow bad coz woke" shit
English

@BuckyRichardso2 @WaltRuff fanduel sports has had it pretty consistently over the season, I watched last series on it or Youtube TV. Best of luck.
English

@dtoxmilenko @WindowsCentral As a malware analyst, always been so in awe by you guys and the deep history
English

Im not just a user, I'm the developer. But hell yeah, TeamUIX has been modding the Xbox dashboard since 2001 starting with Gcue's True Blue patches and the xboxdash[.]net community, and then JbOnE's tHc. This project started during covid, with patches to the 5960 dashboard and XIP (the menu's scripts) mods.
Needing to do more, I started to RE how XIP's were displayed. Then it turned into an actual dashboard skeleton. This is roughly 6 years of RE work :)
Thanks for the shoutout! TeamUIX. Rocking the box, and now your desktop, since 2001!
English

The original Xbox dashboard has been fully reverse-engineered and reconstructed to run on PC. It’s not just a theme—it’s built using real retail code and can even launch your Steam games.
Here is what we think👇
windowscentral.com/gaming/xbox/th…
English

@ajrgd @UK_Daniel_Card yeah this was this confused context i had, I do understand the context you come from and agree.
English

EDR is a baseline capability not an advanced optional feature.
Not having it is like not having a firewall or antivirus in 2004
It doesn't replace dedicated logging (SIEM) but its the bare minimum an org should have.
spencer@techspence
What’s the cybersecurity hill you’re willing to die on? imgflip.com/i/aq4man
English

@UK_Daniel_Card I’m leaving out a big picture. Due to EDR processing costs, companies are unwilling to buy (or allocate) more compute to run EDRs at full capacity, so they willingly deprecate the EDR to minimize compute strain on servers.
English

@ajrgd @UK_Daniel_Card I was saying that an EDR != SIEM or DataLake. DataLake is an application of SIEM. EDR is a Source of SIEM. Same as XDR.
English

I think the industry certainly conflates and blurs things for marketing. Vendors like to sell EDR and SIEM together, into one "platform". And let's not forget XDR, NDR and MDR.
But I don't recognise your point. I wouldn't think a data lake is EDR.
A SIEM might have or use a data lake though.
EDR comes from the lineage of device antivirus, firewalls and agents.
Whereas SIEM originates from the heritage of cloud platforms, logs and central management.
The way I see it, a lot of EDR is monitoring, rules engine, threat detection, containing the blast radius, device alerting and pushing of events. Crucially, while an EDR agent is more active and involved than a SIEM, the detection of threats is still mostly a reactive activity, rather than proactive and autonomous.
While an EDR tries to detect malicious activity and unusual behaviour beyond its rules, and tries to block malware and exfiltration, it's fundamentally about detection and response, not prevention.
An EDR can't prevent threats, in the same way a SIEM can't prevent threats. But they're both crucial lines of defence.
SOC teams are still looking at events, alerts, metrics and logs somewhere, in order to detect and respond to incidents. They might not always be looking at raw logs in a SIEM; they might look at alarms, metrics, dashboards and alert logs.
My point is: you really want both. And a SIEM and EDR have similar activities, but their location and role are different, at least by segmentation and definition. They usually depend on each other. I can't see one without the other. With any cybersec solution, you need centralised management anyway, so you probably have a SIEM (or something that looks like it) in your SOC platform.
What is a good EDR if you don't have rich threat intelligence, with your SIEM as a source of this intel?
What is a good SIEM if you don't have rich device events emitted from EDR agents?
What is a good EDR if you don't have rich device events and logs available to observe in a centralised platform?
English

@ajrgd @UK_Daniel_Card Maybe you conflate what a SIEM is, bc you’re saying the same thing as “Data Lake is like EDR bc EDR has logs”.
English

@UK_Daniel_Card yeah. An EDR normally has (and is driven by) logs though?
… which you could call a SIEM, a lightweight one.
So does every EDR have a SIEM? I'd say yes
English

THEY MADE A WORMY BOI IN NPM ON MY BIRTHDAY
THEY MADE A WORMY BOI IN NPM ON MY BIRTHDAY
THEY MADE A WORMY BOI IN NPM ON MY BIRTHDAY
THEY MADE A WORMY BOI IN NPM ON MY BIRTHDAY
THEY MADE A WORMY BOI IN NPM ON MY BIRTHDAY
Katie Paxton-Fear@InsiderPhD
blog -> semgrep.dev/blog/2026/sap-…
English

@KaiKai2492 @CleverMonsterCT I saw someone say “kids don’t know about being a ‘poser’ now and days because they’re all ones”
English

We've come full circle just 15 years ago you got bullied for liking this stuff now millionaire's larp it for clout.
Let that sink in.
Logan Paul@LoganPaul
After reading this I’m not convinced the One Piece is real
English

@anton_chuvakin @KarlsSec @X I’ve found screenshotting to be the best method to curating your FYP. I can often change my FYP’s focus 3 different times over a week. Gaming, infosec, politics, you can cycle through as you please just by taking screenshots.
English

@AJKinOHIO @DreadfuryDK this shit breaks every other dungeon for the “Current Segment” meter
English

@DreadfuryDK Well, some of them got baked in... Dps meter for example
English

@boof_ivermectin @TitusPullo1125 @TukiFromKL to be fair, higher property taxes insinuates higher home value. If your home vs net-worth distribution isnt absolutely abysmal, that’s a good thing.
English

@TitusPullo1125 @TukiFromKL because the cato institute will literally just blatantly lie in support of their open borders ideology.
one of their recent “studies” counted higher property taxes as a financial *benefit* of mass immigration.
English

the CATO Institute.. a libertarian think tank funded by the Koch brothers.. just published a study showing immigrants paid more in taxes than they received in benefits every single year from 1994 to 2023..
not a left-wing university.. not a Democratic PAC.. the Koch brothers' own research institute..
they reduced the deficit by $14.5 trillion over 30 years.. they earn less per hour but work at higher rates.. which means higher per capita income.. which means higher taxes paid..
the country spent 30 years being told immigrants were draining the system.. turns out they were funding it.. and the people who told you that knew the numbers the whole time
Leading Report@LeadingReport
Immigrants generate more income and taxes than the average person, per CATO Institute.
English

@grimoire43 Atp I just AMS anything I know isn’t physical dmg. If it’s not physical, it’s magic 😭
English

Don't make me grab the mayonnaise.
Framework@FrameworkPuter
Every time we engage with an influencer on X dot com, Dell sends them an XPS. Anyone want a free Dell XPS?
English












