home.social

#sans — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #sans, aggregated by home.social.

fetched live
  1. So, I actually really liked how one comic panel I drew of Nightmare came out, so I turned it into a full body sketch (am thinking of doing an illustration and keychain version, too). It was the first sketch I sold at Comic City, so I feel like I did a good job?

    #art #traditionalart #fanart #sketch #undertale #sans #nightmaresans #undertaleau #mastoArt

  2. Le ISC Stormcast du 18 août analyse les indicateurs réseau du moment. Un bon rappel que la threat intelligence quotidienne, c'est un muscle à entretenir — pas un flux à ignorer jusqu'à l'incident. Les podcasts techniques comme celui-ci restent une façon concrète de garder le radar actif. #infosec #threatintel #SANS
    malware.news/t/isc-stormcast-f

  3. Le ISC Stormcast du jour — un rituel quotidien discret qui agrège les signaux faibles du threat landscape mondial. Derrière le format podcast, c'est une veille structurée sur les scans actifs, les exploitations en cours et les IOC frais. Un flux souvent sous-estimé, mais redoutablement utile pour calibrer sa posture défensive. #infosec #threatintel #SANS
    malware.news/t/isc-stormcast-f

  4. Sans toilettes ni climatisation pendant 40 heures : le cauchemar des passagers d’un ferry de La Méridionale

    Sanitaires qui débordent, canalisations bouchées, aucune climatisation… Pendant 40 heures, en pleine mer. C’est ce qu’ont vécu les 1 092…
    #Marseille #FR #France #Actu #News #Europe #EU #2026 #40heures: #actu #Actualités #cauchemar #Climatisation #des #europe #pendant #Provence-Alpes-Côted'Azur #Républiquefrançaise #sans #Société #toilettes
    europesays.com/fr/1129458/

  5. Accident grave à Marseille : un piéton percuté par une conductrice sans permis

    Un équipage de marins-pompiers passait par là au bon moment et a pu lui prodiguer très rapidement les…
    #Marseille #FR #France #Actu #News #Europe #EU #2026 #actu #Actualités #BreakingNews #conductrice #europe #Faits-divers-Justice #par #permis #piéton #Provence-Alpes-Côted'Azur #renversé #Républiquefrançaise #sans #une
    europesays.com/fr/1127219/

  6. Futur centre de rétention administrative de Nantes : la bataille des terres agricoles et zones humides s’intensifie

    Article premium, Réservé aux abonnés La mobilisation contre le projet de centre de rétention admi…
    #Nantes #FR #France #Actu #News #Europe #EU #actu #Actualités #Assembléenationale #carquefou #Économie #environnement #europe #immigration #notre-dame-des-landes #paysdelaloire #Prison #Républiquefrançaise #sans-papiers #une #Vigneux-de-Bretagne
    europesays.com/fr/1121510/

  7. When asked when I’ll be attending #BlackHat, #DEFCON, #BSidesLV, or a #SANS event, my answer is: probably never. It’s not for lack of desire, quite the opposite; I would love to attend.

    The simple reason is that I am the sole breadwinner supporting my family, and I finance these trips and conferences, as well as my lab and research, entirely out of my own pocket, all while having to take vacation time to attend. Consequently, I have to choose very carefully which events to attend and plan them well in advance. Spontaneous trips are rarely an option for me.

    Of course, I’m aware of the argument that my company benefits from this, too. That is true, just as they benefit from many of my other activities. However, there is no willingness on their part to contribute financially or organizationally. Instead, there are usually "good reasons" why it isn't possible.

    That is the reality.

    Nevertheless, I continue to invest in my #professionaldevelopment because it matters to me.

  8. When asked when I’ll be attending #BlackHat, #DEFCON, #BSidesLV, or a #SANS event, my answer is: probably never. It’s not for lack of desire, quite the opposite; I would love to attend.

    The simple reason is that I am the sole breadwinner supporting my family, and I finance these trips and conferences, as well as my lab and research, entirely out of my own pocket, all while having to take vacation time to attend. Consequently, I have to choose very carefully which events to attend and plan them well in advance. Spontaneous trips are rarely an option for me.

    Of course, I’m aware of the argument that my company benefits from this, too. That is true, just as they benefit from many of my other activities. However, there is no willingness on their part to contribute financially or organizationally. Instead, there are usually "good reasons" why it isn't possible.

    That is the reality.

    Nevertheless, I continue to invest in my #professionaldevelopment because it matters to me.

  9. ----------------

    🎯 AI-run attacks and SOC detection gaps
    ===================

    The article raises a practical question from a post-incident debrief: "There were alerts. They did not rise to the right level. How does the SOC miss this?" The gap isn't in signal generation but in alert severity and escalation logic.

    The core problem

    AI-driven attacks operate across multiple paths simultaneously, with no single event being critical enough to trigger paging. Traditional alert rules, tuned for single high-severity events, miss the aggregate pattern. Alerts fire but stay below the threshold that would wake someone at 2 AM on a Saturday.

    What "ready" looks like

    Three concrete detection strategies are proposed:

    1. Alert-severity rules for slow, multi-path attacks: Rules that aggregate low-severity signals across paths, so that no single event needs to be critical for the on-call person to get paged. The trigger is the pattern, not the individual event.

    2. Baseline of your own automation: Establish what your legitimate automation looks like (scheduled scripts, service accounts, API calls) so that hostile automation becomes distinguishable. Without a baseline, an AI agent running reconnaissance at machine speed blends into normal noise.

    3. Deception seeded throughout the environment: Canary files, honeytokens, fake shares. A fast, indiscriminate AI agent trips these because it doesn't have the context to avoid them. A careful human adversary would walk past them.

    Relevant SANS courses
    • SEC555: Detection Engineering and SIEM Analytics (GIAC GCDA)
    • SEC541: Cloud Security Threat Detection (GIAC GCTD)
    • SEC599: Defeating Advanced Adversaries: Purple Team Tactics and Kill Chain Defenses (GIAC GDAT)

    Analysis

    The article doesn't present a specific incident or IoCs. It's a conceptual framework for detection engineering against AI-driven threats. The core insight is that detection logic built for human-speed, single-path attacks won't catch AI agents operating across multiple vectors simultaneously at machine speed.

    The deception approach is the most immediately actionable. Canary-based detection doesn't require new analytics pipelines, it just requires seeding artifacts that only a non-human actor would touch.

    The automation baseline concept is sound but operationally harder. Most organizations don't have a clean inventory of what their own automation does, making it difficult to establish a useful baseline.

    The SANS course references suggest this content is tied to training curriculum rather than independent research. The framework itself is preliminary, no empirical validation is provided.

    🔹 AI #DetectionEngineering #SOC #SANS #Deception

    🔗 Source: sans.org/go/readiness-for-ai-a

  10. Meant to post this yesterday but was dealing with some nasty fatigue. Anyway, I did another picture of Dream Sans with his current outfit this time! I think it came out well?

    #art #traditionalart #fanart #sketch #undertale #sans #dreamsans #mastoArt

  11. I wanted to learn how to draw Dream Sans, so I searched up some pics and drew this sketch. Then I was told his outfit got a redesign and I was using the old version T.T Hope you like it anyway!

    #art #traditionalart #fanart #sketch #undertale #sans #dreamsans #mastoArt

  12. Réunion d'organisation du défilé internationaliste du 14 juillet
    lundi 22 à 19h, Bourse du travail Paris (Château d’eau), Paris
    agendamilitant.org/a8397 #antiracisme #sans-papiers #antifascisme #solidarité #migrants

  13. Réunion d'organisation du défilé internationaliste du 14 juillet
    lundi 22 à 19h, Bourse du travail Paris (Château d’eau), Paris
    agendamilitant.org/a8397 #antiracisme #sans-papiers #antifascisme #solidarité #migrants

  14. Réunion d'organisation du défilé internationaliste du 14 juillet
    lundi 22 à 19h, Bourse du travail Paris (Château d’eau), Paris
    agendamilitant.org/a8397 #antiracisme #sans-papiers #antifascisme #solidarité #migrants

  15. Sans undertale

    Made this in 2022 after replaying the game.
    Which in return is a redraw of another drawing actually.


    #Sans #undertale #fanart #digital-art #toby-fox
  16. 📰 SANS Survey: Government Cybersecurity Crippled by Funding Gaps and Staff Shortages

    🚨 SANS survey reveals a crisis in government cybersecurity: only 1/3 of programs are fully funded and 50%+ face severe staff shortages. This creates a dangerous gap between strategy and execution. #GovCyber #Cybersecurity #SANS

    🌐 cyber[.]netsecops[.]io

    🔗 cyber.netsecops.io/articles/go

  17. Some art of our Ink named Scribbly snuggly their skelewolf mate Ure~
    Ure belongs to bsky.app/profile/genniid.bsky.

    Also credit to whoever made the smooch meme base. I have no idea who started it but if you know please DM me so I can credit them.

    #undertale #undertaleau #undertaleau #utmv #utmvau #undertalefandom #ink #inksans #lustink #sans #inksans #skeletonwolf #skelewolf #wolf