home.social

#attackcon — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #attackcon, aggregated by home.social.

  1. Exciting news! 📣 Join me at ATT&CK CON 4.0 on October 24-25, 2023, in McLean, VA or online. I'll be presenting alongside my colleague Michael Raggi from Mandiant/Google Cloud. We're unveiling a groundbreaking technique, never seen before, exploiting the .lnk shortcut format. Don't miss out! Register here: [Registration Link](na.eventscloud.com/website/586) #ATTACKCON #malwareresearch

  2. Quick recap MITRE ATT&CK con with several projects and repositories to check out, some ideas and notes also hannahsuarez.github.io/2019/mi

    #attackcon #infosec

  3. Whew! Just finished watching/listening to a 6 hour livestream of MITRE #ATTACKcon (while working). Lots of new ideas and projects to look into.
    Tomorrow doing a cloud #security workshop (all day, online).

  4. #ATTACKcon on #purpleteam-ing -- Focus on a single TTP. Rapid emulation and validation allows for more rapid response against high threat activity. Instead of a large engagement, determine if it's an event trigger/s make sure you are covered. (Emma MacMullan, Federal Reserve)

    Very nice approach, to go small. No wonder it came out as a response to working in a large enterprise like Federal Reserve.

    Livestream: youtube.com/watch?v=L3KxKAGSJp

    #infosec #watchparty

  5. #ATTACKcon #watchparty Another good visualization is to think of the MITRE ATT&CK Framework as a periodic table of elements, where a mixture of particular elements (ie tactics, techniques, etc) provide a chemical reaction

    youtube.com/watch?v=L3KxKAGSJp

  6. #ATTACKcon Check out mordor.readthedocs.io
    The Mordor project provides pre-recorded security events generated by simulated adversarial techniques. The pre-recorded data is categorized by platforms, adversary groups, tactics and techniques defined by the Mitre ATT&CK Framework.

    github.com/hunters-forge/mordo

    #infosec

  7. #ATTACKcon #watchparty #infosec #windows #eventlog Check out github.com/hunters-forge/api-t

    A repo focused primarily on documenting the relationships between API functions and security events that get generated when using such functions.

  8. #ATTACKcon #watchparty

    Nawww I got a shoutout from Katie Nickels, ATT&CK Threat Intelligence Lead, MITRE :flan_aww:

    youtube.com/watch?v=L3KxKAGSJp

  9. @TheGibson #attackcon #watchparty

    11am EDT is "Ready to ATT&CK? Bring Your Own Data (BYOD) and Validate Your Data Analytics!" by makers of HELK (github.com/Cyb3rWard0g/HELK)

  10. @TheGibson

    TIL Misinfosec

    The Misinfosec group is where misinformation and information security people meet and learn from each other.

    misinfosecproject.github.io/in

    #infosec #attackcon

  11. I really like the idea have a threat/attack framework , and you visualize it like a board game. You land on a 'square' and you can do X, Y, Z.. I mean, not an actual -game board- but more like a visualization technique #ATTACKcon

  12. We actually change the game for the adversary, maybe it's not tomorrow, maybe it's not next year, but we can get to the point where we're inside the adversary's decision loop. #ATTACKcon

  13. Spent about 7 hours today with the MITRE #livestream learning about various defence techniques. Another full day of #ATTACKcon tomorrow.

    There is at least a few things on my to do list incorporating that framework.

  14. CW: mitre attackcon

    John Wunder, Principal Cybersecurity Engineer, MITRE at #ATTACKcon on having security monitoring and telemetry in order to update the MITRE ATT&CK Framework of what adversaries are doing.

    I was talking to the syslog-ng Tech Evangelist about how difficult it can be to obtain log samples from third parties (ie for projects like MITRE, for high level information sharing, documentation etc)

  15. This is a first - #ATTACKcon presenter from Argentina is channelling 90s-00s Siouxsee & The Banshees goth vibes and I'm loving it.

  16. #ATTACKcon Loving the whole Indiana Jones theme! "Raiders of the MITRE Framework: How to Build Your Own Threat Library"

    Livestream: youtube.com/watch?v=xiUvOGr7Zf

  17. ATT&CK for Cloud version 1 released (last week) #ATTACKcon
    See list at attack.mitre.org/resources/upd
    DNC hack was a notable incident for use case of adversary in this page. They need to build this out and looking for contributions (majority of how framework is built from community)

    #infosec

    Listening to livestream now at youtube.com/watch?v=xiUvOGr7Zf

  18. Now watching #ATTACKcon youtube.com/watch?v=xiUvOGr7Zf livestream - just started now and will go again tomorrow.

  19. Had a good time at #BSidesLuxembourg2019 as well as the #MITRE attack community user group meetup. Back in Berlin now! But in a couple of days, will be tuning into the #ATTACKcon livestream at mitre.org/attackcon (held October 28 – 30, 2019)