6.1K Followers
1.7K Following
435 Posts

Senior Security Researcher, Proofpoint Emerging Threats. Digital Arcanist

I've been doing this cybersecurity thing for the better part of a decade now. Probably longer than that. I'm starting to forget. Time is relative, but it surely isn't kind to my memory.

I'd like to think I do cybersecurity well, but blue teamers collectively get told they're doing it wrong constantly. So maybe I just failed forward throughout my career.

Oh, I wrote a book. Its a good framework for setting up a virtual machine lab. See my bookmarked toots if you're curious.

Finally, I occasionally write about tech/nerd-related things over at https://www.totes-legit-notmalware.site where I expose that I have a short fuse, and no filter.

Work-Related hashtags:
#Iocs #ThreatIntel #DFIR #Malware #NSM #suricata #snort #BEC #phishing #APT #ThreatDetection

Hobbies:
#VideoGames #XCOM2 #Minecraft #Synthetik #Fallout #Skyrim #Anime #Manga #Adventure #Fantasy #Isekai #HomeImprovement #WoodWorking #MetalWorking #HomeLab

self-verificationhttps://www.yeettheayys.cf/v_me/
Emerging Threats NSM ruleshttps://community.emergingthreats.net
How to Homelabhttps://leanpub.com/avatar2
Personal Bloghttps://www.totes-legit-notmalware.site
It was a long day. but I still got my 45 minutes in
submitted a talk proposal for Suricon. Crossing my fingers.
This whole Anthropic things is funny as fuck but I think we all know it's going to change very little about anything. Haters still hate, bros still bro, and the function is still shit. But at least now we can all point to the various reasons it's shit so I guess that's something.

@da_667 @DaveMWilburn @k3ym0

DNS logs, a well built forwarding chain, and a properly tuned dashboard will trigger on this in a few hundreds of milliseconds.

But how many enterprises have that? We're still trying to convince people that naked RDP on the Internet is a bad idea, and that industrial control systems shouldn't ship with open telnet and default creds.

someone sacrificed limbs to the machine god to make this pile of shit run in production. The machine god giveth, the machine god taketh the fuck away.
Mark Zuckerberg... Shut the fuck up

if I had to consolidate it into a single toot: claude code agent source code was leaked. Anthropic claims that claude code was written by its AI. And speaking as someone who has the programming depth of a small puddle, even I can reason that this code is dogshit.

It is a miracle that any of this works.

guys, I'm havin' a fucking wonderful time following this thread.

https://neuromatch.social/@jonny/116324676116121930

jonny (good kind) (@[email protected])

- Claude code source "leaks" in a mapfile - people immediately use the code laundering machines to code launder the code laundering frontend - now many dubious open source-ish knockoffs in python and rust being derived directly from the source What's anthropic going to do, sue them? Insist in court that LLM recreating copyrighted code is a violation of copyright???

neurospace.live
@da_667 talk about Synthetik and Terror level increases, and how it relates to the torrent of noise that a win11 machine spits out by default. Slay one noisy process after another and MS escalates UNTIL it uses *hard coded* AAAA records to phone home.