69 Followers
307 Following
263 Posts
Infosec, and the occasional extreme hiking. Corelight.
I did a ting! https://www.youtube.com/live/dHthJNFt-NI?feature=shared webinar on Zeek scripts / spicy analyzers for a real world project...and the challenges therein. Enjoy.
Zeek Webinar: Designing logs in the real world

YouTube
Ben Reardon shared an awesome (and funny) post on the Corelight blog about his experience at the Black Hat USA NOC (2024) and his process for detecting runZero's SSHamble.com research scans in real-time. Rob and I had a great time chatting with Ben and getting to the see Black Hat NOC up close: https://corelight.com/blog/black-hat-usa-2024-noc-learnings
Black Hat USA 2024: Tales from the NOC | Corelight

Recapping our learnings from the Network Operations Center (NOC) at Black Hat USA 2024. Using historical network logs to detect threats during the Network Operations Center (NOC) at Black Hat USA 2024.

Boost this toot if you're planning on sticking around Mastodon & the Fediverse whether or not it's more popular than Bluesky.
@skinnylatte @Viss yes look sepira place of 403b
@skinnylatte also hate it…. Mostly wear free tech shirts during conferences as…no shopping (and lots of tech privilege)
@atoponce @hal_pomeranz and 04 c is 40f (at the same accuracy as 16->61 anyway)
@thekileen @surefire it’s a puzzling boundary…suppose you ship top of Linux as customers prefer that…do you inherit all of Linux security in that case?
@mttaggart cool, have just done some customization and bite shell feels like 1980s with multi second delays. Need to figure out what to undo…
@kevinmirsky omg has been like 20 years since my last company picnic… tho I did grow up mystified at the picnics of my parents companies (with adult eyes now make sense)
@da_667 literally saw people posting this message (not meme) as why staying on twitter