chris (@cottow) 's Twitter Profile
chris

@cottow

1+1=3 for large values of 1

ID: 15100953

linkhttps://www.northwave-security.com calendar_today12-06-2008 20:41:33

1,1K Tweet

234 Followers

540 Following

haroon meer (@haroonmeer) 's Twitter Profile Photo

Interesting to see how Moxie Marlinspike’s post changed the tenor of discussions on web3 (at least on my timeline). The strongest proponents shifted from “it’s the solution” to “it could be with a lot more work”. Also a lesson for us: Nothing beats doing the work & writing it up cogently.

Phil Klay (@philklay) 's Twitter Profile Photo

The sad thing is that if we hadn’t expanded NATO, Putin would have tirelessly devoted himself to world peace and the brotherhood of man.

Northwave Labs (@northwavelabs) 's Twitter Profile Photo

While this may sound too simple, we've managed to escalate across domains on several occasions by accounts with blank passwords 🔥! In this blog we describe how it works, and which popular spraying tools we've updated to support empty password spraying: northwave-security.com/abusing-empty-…

rfceditor (@rfceditor) 's Twitter Profile Photo

RFC 9225: Software Defects Considered Harmful, J. Snijders, et al., rfc-editor.org/info/rfc9225, This document discourages the practice of introducing software defects in general and in network protocol implementations specifically. 1/2

Jake Williams (@malwarejake) 's Twitter Profile Photo

Any incident responder saying "DO NOT PAY A RANSOM" is hurting their customers. Paying (or not) should be a risk-informed business decision, pure and simple.

Dominic White 👾 (@singe) 's Twitter Profile Photo

I worry that the current belief/practise that the only way to get into pentesting is via certs is having a weirdly damaging side effect. 🧵

Northwave Labs (@northwavelabs) 's Twitter Profile Photo

Cobalt Strike BOF foundation for kernel exploitation using CVE-2021-21551. In its current state, as a PoC, it overwrites the beacon token with the system token (privesc). github.com/NorthwaveSecur…

Wonder of Science (@wonderofscience) 's Twitter Profile Photo

These 'Beach Animals' were created by Theo Jansen as a fusion of art and engineering. The kinetic structures walk on their own and get all their energy from the wind.

chris (@cottow) 's Twitter Profile Photo

Pretty cool blog post about how to deploy and test Azure Sentinel monitoring rules at scale! northwave-security.com/soc-testing-mi…

chris (@cottow) 's Twitter Profile Photo

Yesterday we presented our research on the mental impact of ransomware attacks on people at victim orgs at #one2022. This topic deserves much more attention than it's getting, happy to see awareness rise. Blog at northwave-security.com/en/blog-after-… , paper with stats will be published soon

Allan “Ransomware Sommelier🍷” Liska (@uuallan) 's Twitter Profile Photo

I love this blog post from Northwave. Intelligent Security Operations.. I cover some of this in my ransomware recovery talk. Taking care of your people during ransomware (and other) IR is really important, I see a lot of burnout and resignations after a ransomware incident. northwave-security.com/en/blog-after-…

Northwave Labs (@northwavelabs) 's Twitter Profile Photo

Northwave has conducted research into the psychological effects of a ransomware crisis on people involved in mitigating a ransomware attack. The findings reveal the deep marks that a ransomware crisis leaves on all those affected. northwave-security.com/wp-content/upl…

Responders.NOW (@responders_now) 's Twitter Profile Photo

The stolen data from LastPass is actively being decrypted and exploited. People with secrets keys for crypto wallets & login data to online wallets are being plundered. If you had your secret keys in LastPass, move your funds now, changing your password does NOT help.