rawb (@rawb55914763) 's Twitter Profile
rawb

@rawb55914763

ID: 937183127730032640

calendar_today03-12-2017 04:54:04

1,1K Tweet

66 Takipçi

431 Takip Edilen

Nasreddine Bencherchali (@nas_bench) 's Twitter Profile Photo

PowerShell has a list of suspicious keywords. If found in a script block an automatic 4104 event will be generated regardless of logging policy :) (True for both PWSH 5/7) Look for EID 4104 with Level 3 (Warning) Full List: gist.github.com/nasbench/50cd0…

PowerShell has a list of suspicious keywords. If found in a script block an automatic 4104 event will be generated regardless of logging policy :)  (True for both PWSH 5/7)

Look for EID 4104 with Level 3 (Warning)

Full List: gist.github.com/nasbench/50cd0…
Stephen Diehl (@smdiehl) 's Twitter Profile Photo

Yup, we live in a world where Taylor Swift did better due diligence than Sequoia Capital. And has the sense to *gasp* consult a lawyer about securities law. Which is far better than half the tech industry that got wrapped up in crypto fraud. businessinsider.com/taylor-swift-a…

Ryan Naraine (@ryanaraine) 's Twitter Profile Photo

👀👀 "Microsoft assesses that at least one Russian private sector organization has materially supported Cadet Blizzard by providing operational support including during the WhisperGate destructive attack." 👀👀

Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

Dear DFIR colleagues, Always be wary of 404 error codes in web server log files. Some webshells intentionally send this error code to deceive you into thinking the request failed. shadowserver.org/news/technical…

Dear DFIR colleagues,
Always be wary of 404 error codes in web server log files. Some webshells intentionally send this error code to deceive you into thinking the request failed.

shadowserver.org/news/technical…
Jason Haddix (@jhaddix) 's Twitter Profile Photo

Security Consultancy #3 Sr Tester Confession: "We bring on Sr Testers who present at Defcon and such to the sales calls and do the testing with jr testers who are subs from much cheaper countries"

Wietze (@wietze) 's Twitter Profile Photo

My talk demonstrating how with minor tweaks you can really frustrate command line-based detections across Windows, Linux and MacOS is now live: ⚡ youtube.com/watch?v=52tAmV… Security BSides Dublin #threatdetection #threathunting #lolbas #offsec

My talk demonstrating how with minor tweaks you can really frustrate command line-based detections across Windows, Linux and MacOS is now live: 
⚡ youtube.com/watch?v=52tAmV…

<a href="/BSidesDublin/">Security BSides Dublin</a> #threatdetection #threathunting #lolbas #offsec
vx-underground (@vxunderground) 's Twitter Profile Photo

The attached images is from a 1988 malware analysis report from AT&T Bell Labs. The report does a high-level overview of a viral infector targeting UNIX operating systems.

The attached images is from a 1988 malware analysis report from AT&amp;T Bell Labs. The report does a high-level overview of a viral infector targeting UNIX operating systems.
unusual_whales (@unusual_whales) 's Twitter Profile Photo

This is unusual trading by a politician. Marjorie Taylor Greene bought Palantir, $PLTR, on April 8th. On April 17th, Palantir, $PLTR, was awarded a government contract with ICE to develop ImmigrationOs. She sits on the Committee of Homeland Security Palantir is up nearly 50%

This is unusual trading by a politician.

Marjorie Taylor Greene bought Palantir, $PLTR, on April 8th.

On April 17th, Palantir, $PLTR, was awarded a government contract with ICE to develop ImmigrationOs.

She sits on the Committee of Homeland Security

Palantir is up nearly 50%
Dividendology (@dividendology) 's Twitter Profile Photo

This is funny. What if you invested in the S&P 500 every time CNBC had a "Markets in Turmoil" special? Well... your average return after one year would be 40%, with a 100% success rate.

This is funny.  

What if you invested in the S&amp;P 500 every time CNBC had a "Markets in Turmoil" special?  

Well... your average return after one year would be 40%, with a 100% success rate.