Chahat Sharma (@Chahatxsharma)

에이전트의 persistent SSH 기능이 도입되면 보안 위협 모델이 크게 바뀐다는 지적이다. 감사 로그, SSO 범위 설정, 온콜 대응 절차가 인간 사용자를 전제로 설계돼 있었기 때문에, 관련 도구와 운영 체계가 이 변화에 따라잡아야 한다고 강조한다.

https://x.com/Chahatxsharma/status/2052769441197244652

#ssh #agenticai #security #sso #auditlogs

Chahat Sharma (@Chahatxsharma) on X

@testingcatalog Persistent SSH for an agent quietly redraws every threat model. Audit logs, SSO scoping, on-call playbooks all assumed a human at the other end. Tooling will catch up but the gap will be loud first.

X (formerly Twitter)

Auditable.

AdminAuditLog + UserAuditLog timelines with rich previews for every local + remote account.

Know exactly what you need to, easily, when you need it.

This is just one example of how powerful Loops administration is.

Built for Admins. Loved by the community 🚀

#Loops #LoopsAdmin #LoopsDev #AuditLogs

Clearwater, Florida, library disruption leads to felony charge against former employee

A former Clearwater library employee faces a felony charge after public computers at three branches were disrupted in February.

DysruptionHub

Atlassian audit logs aren’t useless. They’re shaped wrong.

Nested JSON and shifting arrays turn simple questions into manual work. Dashboards break. The fix isn’t more parsing in the SIEM. It’s modeling audit data at the edge.
https://graylog.org/post/from-atlassian-json-to-actionable-audit-insights/
#SecurityOperations #SIEM #AuditLogs

From Atlassian JSON to Actionable Audit Insights

Turn raw Atlassian audit JSON into stable, searchable events. Learn why edge modeling beats pipelines for faster triage, better alerts, and dashboards.

Graylog
Atlassian audit logs aren’t useless. They’re shaped wrong. Nested JSON and shifting arrays turn simple questions into manual work. Dashboards break. The fix isn’t more parsing in the SIEM. It’s modeling audit data at the edge. graylog.org/post/from-at... #SecurityOperations #SIEM #AuditLogs

From Atlassian JSON to Actiona...
From Atlassian JSON to Actionable Audit Insights

Turn raw Atlassian audit JSON into stable, searchable events. Learn why edge modeling beats pipelines for faster triage, better alerts, and dashboards.

Graylog

Cảnh báo nợ kỹ thuật: Lưu trữ log kiểm toán (audit logs) trong DB chính là "quả bom hẹn giờ" cho SaaS của bạn.
1. Hiệu năng: Log kiểm toán sinh ra nhiều, làm DB quá tải, chậm chạp.
2. Tuân thủ: Auditor có thể nghi ngờ tính toàn vẹn khi log nằm chung DB với dữ liệu người dùng.
Giải pháp: Tách biệt, lưu log kiểm toán vào hệ thống lưu trữ lạnh (cold storage), bất biến.

#SaaS #AuditLogs #TechnicalDebt #Database #Performance #Compliance #NợKỹThuật #NhậtKýKiểmToán #BảoMật #LưuTrữ

https://www.reddit.

Why does `kubectl exec` lack audits? 🤔

Most Kubernetes clusters offer no built-in logging for container commands executed with `kubectl exec`. Adyen's `kubectl-rexec` fixes this by adding an auditable layer to monitor these actions. Designed for Kubernetes 1.30+ (or 1.29 with specific flags), it simplifies compliance without compromising utility. #Kubernetes #AuditLogs

🔗 Project link on #GitHub 👉 https://github.com/adyen/kubectl-rexec

#Infosec #Cybersecurity #Software #Technology #News #CTF #Cybersecuritycareer #hacking #redteam #blueteam #purpleteam #tips #opensource #cloudsecurity

— ✨
🔐 P.S. Found this helpful? Tap Follow for more cybersecurity tips and insights! I share weekly content for professionals and people who want to get into cyber. Happy hacking 💻🏴‍☠️

Decoding Microsoft 365 Audit Logs Using Bitfield Mapping: An Investigation Report

A recently refined bitfield mapping technique decodes the opaque UserAuthenticationMethod values in Microsoft 365 audit logs.

GBHackers Security | #1 Globally Trusted Cyber Security News Platform
🚨 "Shockingly," Microsoft's AI smashed your audit logs, and they're keeping quiet about it. 🤯 Meanwhile, Pistachio's blog drowns you in #cybersecurity jargon while sidestepping the fact that you're left clueless. 🥜✨
https://pistachioapp.com/blog/copilot-broke-your-audit-log #MicrosoftAI #AuditLogs #TechNews #PistachioBlog #HackerNews #ngated
Copilot Broke Your Audit Log, but Microsoft Won’t Tell You

Copilot Broke Your Audit Log, but Microsoft Won’t Tell You

Pistachio

Every action, every insert, every edge case — logged. Audit trail is no longer optional. It’s a core feature.

#AuditLogs #SecurityFirst #CSharp #BuildInPublic