Speaking of upcoming appearances, I'll be talking about DECEIVE, my LLM-based SSH honeypot at the #Honeynet Project's workshop in Prague next month. If you're there, come say hi. As usual, I'll have #PyramidOfPain stickers and buttons.

https://prague2025.honeynet.org/

For more about DECEIVE:
https://www.splunk.com/en_us/blog/security/deceive-ai-honeypot-concept.html

2025 Honeynet Project Workshop – Prague, Czech Republic

After being requested from a follower of my write-ups. I went back and working on the new additions to the SOC Level One Path on TryHackMe, that I haven't completed yet. I plan on doing write-ups of these as well. Here is the first one, it was on the Summit Room. This room was really cool because the company your helping hired a hacker named Sphinx that your in communications with. So your using the steps on the pyramid of pain to thwart Sphinx ever step of the way. Head over to my webpage or Medium and give my write-up a read.

#TryHackMe #SOCLevelOnePath #PyramidOfPain

https://haircutfish.com/posts/Summit-room/

https://medium.com/@haircutfish/tryhackme-room-summit-9045eb77d3c0

TryHackMe Room — Summit

This is a subscribers only room on TryHackMe. It was created by TryHackMe. Here it the link to said room, TryHackMe Room — Summit.

Haircutfish

A new project from MITRE Engenuity: Summiting the Pyramid is a research project focused on engineering cyber analytics to make adversary evasion more difficult: https://center-for-threat-informed-defense.github.io/summiting-the-pyramid/

#PyramidOfPain #mitre #cyberanalytics

Summiting the Pyramid v1.0.0 — Summiting the Pyramid v1.0.0 documentation

The #PyramidOfPain got a shout-out in the latest @darknetdiaries episode #135. It's always cool to see the ways people use it, and I love when it pops up in places like this!

https://darknetdiaries.com/transcript/135/

The D.R. Incident – Darknet Diaries

Omar Avilez worked in the CSIRT of the Dominican Republic when a major cyber security incident erupted. Omar walks us through what happened and the incident response procedures that he went through.

Thanks! Boy, am I getting old. > David J. Bianco on Twitter: "Exactly 10 years ago today, I first published the #PyramidOfPain. I can hardly believe it's been a whole decade. I'm so lucky that my work has resonated with the security community. Thank you all for your support! https://t.co/ANjMv51a4g" / Twitter — https://twitter.com/DavidJBianco/status/1630917053367431169
The Pyramid of Pain

Update 2014-01-17 I'm updating this post to include a slightly revised version of the Pyramid.  The only real change I made was that I adde...

Exactly 10 years ago today, I first published the #PyramidOfPain. I can hardly believe it's been a whole decade. I'm so lucky that my work has resonated with the security community. Thank you all for your support!

https://bit.ly/PyramidOfPain

The Pyramid of Pain

Update 2014-01-17 I'm updating this post to include a slightly revised version of the Pyramid.  The only real change I made was that I adde...

Officially on my way to the @sansforensics #CTISummit. If you're there, say hi and pick up some #PyramidOfPain swag!
If anyone wants some #PyramidOfPain swag, hit me up at the @sansforensics #CTISummit next week.
For anyone who'll be at @sansforensics Frankfurt next week, come say hi. I'll have some #PyramidOfPain stickers & buttons for you!