Evan Reese

72 posts

Evan Reese banner
Evan Reese

Evan Reese

@reesespcres

Los Angeles, CA 加入时间 Nisan 2018
249 关注526 粉丝
Evan Reese 已转推
x0rz
x0rz@x0rz·
@JackRhysider You can evade an EDR, but you can’t evade a big nerd rawdogging wireshark
English
15
61
979
29.1K
Evan Reese 已转推
Jared Wilson
Jared Wilson@JWilsonSecurity·
🔥New APT41 Methodologies 🔥 While DUSTTRAP was really interesting, analyzing the methodologies observed alongside SQLULDR2 and PINEGROVE were fascinating. Both families highlight very specific methodologies worth hunting for. Check the blog for details! cloud.google.com/blog/topics/th…
English
1
30
58
8.2K
Evan Reese 已转推
Jared Wilson
Jared Wilson@JWilsonSecurity·
"If the technical sleight of hand is successful, the adversary will achieve persistence by means of malicious Chromium-based browser extensions" 🌶️ dissect adversary methodologies 🔥 identify malware families 💥highlight detection opportunities mandiant.com/resources/blog…
English
2
45
92
16.6K
Evan Reese 已转推
Steve Elovitz
Steve Elovitz@SElovitz·
Looking to add a manager to @Mandiant's IR team in DC. Let me know if interested, DMs are open.
English
1
26
44
0
Evan Reese 已转推
Jared Wilson
Jared Wilson@JWilsonSecurity·
Sometimes you just want to hunt 🔫 Three excellent technologies to investigate are... - VPN Clients - Proxy Services - Localhost Tunneling Read along to further expand the defender’s hunting and detection repertoire against these three troublemakers. mandiant.com/resources/burr…
English
4
71
200
0
Evan Reese 已转推
Alyssa (she/her)
Alyssa (she/her)@ramen0x3f·
🚨🚨Today I'm releasing THIRI - a Jupyter notebook for rapidly prototyping threat hunting rules: github.com/mandiant/thiri… THIRI is designed to be super intuitive and even easier to extend than past tools like my own HeySerial. Check out the README for all the deets!
English
10
211
628
0