rcegan
@rcegannMicrosoft Sentinel Practice Lead @ MSSP. Defender, Detection Engineering, Threat Emulation. Blog-haver. Hack the planet.
Similar User
@LucyIsOpal
@trk_rdy
@dronethem
@TeresaWils23375
@jamieantisocial
@politoinc
@lordhorcrux_
@EanMeyer
@neomedecho
@Aphillips1209
@_davewm_
@CvilleCyber
@ssimonsen0202
@ManSh3p
@BigCrazyPorras
I wanted to search for specific keywords or tools mentioned in all the available threat intelligence reports. So I extracted the text from almost 10000 Threat Intelligence reports, including PDFs. I'm preparing an index with a set of predefined searches and their results. Would…
Posted a lil article to detect.fyi about using @elastic's new maturity model for measuring success in your deteng team. Give it a read if you like 🧵 detect.fyi/from-zero-to-e…
From a detection perspective, you can always learn something from opendir. Take this recent opendir, the bash history is exposed... create a quick timeline, can you detect these behaviors with your network and endpoint logs if the tools were used in your environment ?
attack observed! coming from 27.25.151.236 target.txt exposes the targetted site. hxxp://ejt.myjjzd.com urlhaus.abuse.ch/host/27.25.151…
I'll bite
There is an over engineering red team implant analogy somewhere in here
Possibly the handiest menu feature Microsoft added to Sentinel. IYKYK
Detect successful exploitation of CVE-2024-36991 in Splunk
POC for CVE-2024-36991: This exploit will attempt to read Splunk /etc/passwd file. github.com/bigb0x/CVE-202… #exploit #pentest #CyberSecurity
Can anyone point me to some good resources about building out SIEM and specifically log data resiliency + monitoring? Wondering how others tackle monitoring their SIEM data (the data itself, not threat detections) and don't see a ton of discussion on the topic tbh.
I wrote up a new detection engineering blog post on Detect.Fyi about building and structuring a knowledge base that works best for your engineers and your SOC :) Check it out here: medium.com/detect-fyi/the…
Look what has just arrived! 🐙 Giving away one of those to the first 3 authors on the team submitting a story to our Medium publication! 🔥 Not a writer yet? Want your story published? Send me a DM! #DetectionEngineering
Can't say enough good things about #ludus by @badsectorlabs I've used a lot of Cyber Range management tools and none come close to how refined and reliable ludus is. Kudos to the team 👏👏👏
You wouldn’t last an hour in the asylum where they raised me.
United States Trends
- 1. #OnlyKash 58,7 B posts
- 2. Starship 198 B posts
- 3. Jaguar 63,9 B posts
- 4. Nancy Mace 88,4 B posts
- 5. Sweeney 12 B posts
- 6. Celtics 17,7 B posts
- 7. SpaceX 214 B posts
- 8. Medicare and Medicaid 24,8 B posts
- 9. Jim Montgomery 4.143 posts
- 10. Jose Siri 2.890 posts
- 11. Dr. Phil 8.587 posts
- 12. $MCADE 1.362 posts
- 13. Linda McMahon 3.582 posts
- 14. Monty 11,4 B posts
- 15. Dr. Mehmet Oz 8.001 posts
- 16. Stephen Vogt 1.081 posts
- 17. #LightningStrikes N/A
- 18. Cenk 15,1 B posts
- 19. Lichtman 1.268 posts
- 20. Joe Douglas 12,5 B posts
Who to follow
-
Connected
@LucyIsOpal -
Joe
@trk_rdy -
Peter Ngugi
@dronethem -
Teresa Wilson
@TeresaWils23375 -
J⩜⃝mie 🔜 CWC 🪖⌨️
@jamieantisocial -
Polito Inc
@politoinc -
Shlok Yadav 💙
@lordhorcrux_ -
Ean Meyer - @eanmeyer.bsky.social
@EanMeyer -
NEOMED Project ECHO
@neomedecho -
Alex Phillips
@Aphillips1209 -
Dave
@_davewm_ -
Dr. Cville Cyber
@CvilleCyber -
simon simonsen
@ssimonsen0202 -
Shepard
@ManSh3p -
Big🔥 De Patico🧑🏻💻
@BigCrazyPorras
Something went wrong.
Something went wrong.