Ben Reardon
@benreardon
@[email protected] , Security Researcher, works at Corelight. View are my own, etc
ID: 24290590
https://datavizcomau.wordpress.com 14-03-2009 00:22:07
462 Tweet
691 Takipçi
275 Takip Edilen
Chinese #APTs are currently very active. Here is a technical analysis on a #Linux backdoor with kernel level #rootkit used one of them... intezer.com/blog/malware-a… 👏 Avigayil Mechtinger
Fight back against the ICMP tunneling Pingback malware with Anthony Kasza, Ben Reardon, The Zeek Network Security Monitor and Corelight: corelight.blog/2021/05/07/pin…
A follow up from Corelight Labs team on the HTTP vuln #CVE-2021-31166. Some Insight into our Zeek and Suricata detections, plus the evolution of the threat with winRM being a vector on TCP port 5985. corelight.blog/2021/05/27/det… Aaron Soto Anthony Kasza Alex Kirk Paul Dokas
TIL the patent on #SSH fingerprinting “HASSH” I submitted while Salesforce was granted after a few years in the USPO queue. Guess I'm now a legit inventor! hat tip to my co-inventors/pals Adel Ka John Althouse Jeff Atkinson #shouldersofgiants #DFIR #NDR #Zeek patents.google.com/patent/US11095…
You may not think CVE-2021-42292 can be detected at the network level, but our @Corelight_inc Labs team (big shout-out to Keith J. Jones, Ph.D. Alex Kirk @ynadji Ben Reardon) shows you how on the blog today: corelight.com/blog/detecting… #CyberSecurity #DFIR #ThreatHunting #OpenNDR