The company I work for is hiring 6 Senior security engineers. Message me if you are interested (I have no say in hiring decisions, just passing on the msg). Security operations.
#secops #getfedihired
In this Learn Live session, get acquainted with Microsoft Copilot for Security software, terminology, prompts, and more. Register now: https://msft.it/6046ctIPA
After about 10 months from start to finish, the Definitive Guide to KQL: Using Kusto Query Language for Operations, Defending, and Threat Hunting (https://a.co/d/0Xgp8sQ) is officially done. Matthew Zorich, Rod Trent, and I turned in our final edits last week. Now, we all wait for it to be printed. We also spent the weekend getting the KQL queries up in the GitHub repo of the book. Every query in the book will be open-sourced, making it easy to copy and paste queries to help you learn, even if you don't buy the book. There are nearly 500 queries in this book and even more in the repo! We will make the repo public closer to the release date when everything is printed. We really wanted to create this book as real-world-focused as we could. For example, why do we prefer some operators vs. others (such as has vs. in vs. contains) and different data aggregation techniques.
We also got a fantastic amount of contributions from fellow Microsoft employees of KQL queries they use day-to-day with customers. This was incredible and further grounds this book in reality. We are excited for this to get out there. #infosec #EntraID #microsoft #azure #secops #security
Today at Big #Software Company, the service account that runs the endpoint policy compliance client got disabled by the endpoint threat detection client because its password use "appeared suspicious."
We're about a month away from Kessler Syndrome, But Computers.
Want to identify many popular lateral movement techniques?
Master psexec.
Many lateral movement techniques embedded within popular attack tools like Meterpreter, Beacon, and others, behave very very similarly to psexec, just with added obfuscation.
If you thoroughly understand how psexec works, you'll learn to spot many other tools.
https://www.praetorian.com/blog/threat-hunting-how-to-detect-psexec/
Since there has been a huge influx of new users, I decided to write a new #Introduction and actually pin it to my profile.
I'm pushing 50 years old and I live in a Red State that is trying to make me illegal. I'm a #pansexual / #bisexual #transgender woman married to a heterosexual cisgender woman who frequently talks about the current hellscape for people like me in my Toots.
I'm #NeuroDivergent / #ND which is probably why all of these sentences start with "I".
I've worked in #InfoSec for a little over 20 years. I've had lots of roles in #SecEng, #SecOps, and #ThreatManagement. I taught myself #Perl, #Bash, #SQL, and #PowerShell. I'm decent at #JavaScript. I can read #Python and #Ruby. I enjoy automating things and turning manual processes into scripts.
I've been the primary #CareGiver to my wife for 8 years since she developed a chronic condition and went on disability.
My hobbies including #writing #paranormal short fiction, journaling my #dreams, and playing #PCGames on my laptop and #SteamDeck.
I prefer #StarGate over #StarTrek over #StarWars. Still waiting for Amazon to do something, anything with the Stargate property.
While we loved the #ArrowVerse including #Stargirl and #SwampThing, in general we prefer #Marvel over #DC.
I'm a fan of #Horror / #HorrorFam, #HorrorMovies and #HorrorBooks, especially the existential dread of #CosmicHorror or #LovecraftianHorror. I tend to sympathize with the nameless terrors. I am not a fan of mindless slashers, unrelenting gore, or torture porn. Over-the-top, egregious gore that crosses into the absurd is fine, though, so I am a Sam Raimi fan, obvs. Also, #HorrorComedies are underappreciated.
I'm slowly reconnecting with my #Pagan roots. I knew some stuff about #Tarot and had a friend who as a tree a lifetime ago and I'm trying to rekindle that.
We've got #Cats and they are our kids. I also happen to love #Frogs, but we don't have any of those.
#BLM #BlackLivesMatter
#TransgenderRightsAreHumanRights
#LGBT #LGBTQ #LGBTQIA
#ThePandemicIsNotOver
#ClimateChangeIsReal
#SexWorkIsWork
Working on lab VMs for our Threat Hunting with Velociraptor workshop coming to Wild West Hacking Fest this October!
Also, we’ve got a surprise coming for you all… @shortstack and I will be launching a new course late this year, “Advanced Security Operations & Threat Hunting” #infosec #secops #DFIR #Deadwood2023 #WWHF
Never underestimate the aggravation levels that can be reached by automated vulnerability scanning tools in the hands of the ill informed.