Dylan🛡AttacktheSOC (@dylaninfosec) 's Twitter Profile
Dylan🛡AttacktheSOC

@dylaninfosec

Dad ⚭ Husband
𒉭 Azure Security | IAM | DE&TH
🏋️‍♂️CultoftheIron, Learning 🎸

What stands in the way, becomes the way

ID: 1638383922940657664

linkhttps://attackthesoc.com calendar_today22-03-2023 03:35:55

546 Tweet

596 Followers

649 Following

Silas Cutler // p1nk (@silascutler) 's Twitter Profile Photo

This is incredible news! Every API should offer this type of endpoint. If someone finds a leaked API key, let them report it back through the API safely. "Credential revocation API to revoke exposed PATs is now generally available" github.blog/changelog/2025…

Dylan🛡AttacktheSOC (@dylaninfosec) 's Twitter Profile Photo

Sometimes you take an action and the response frustrates you, especially when it's an outright contradiction. But in that moment, you've also learned exactly where you stand with that person.

Chris Traynor (@cstraynor) 's Twitter Profile Photo

I'm teaching a 4 hr pay-what-you-can (as low as $25) Offensive Tooling Foundations w/ Antisyphon Training May 30. Due to my own laziness, students will get ALL the material (slides, VMs, lab guides, etc.) from my full 8 hr class by the same name. Register➡️pwyc.ridgebackinfosec.com

I'm teaching a 4 hr pay-what-you-can (as low as $25) Offensive Tooling Foundations w/ <a href="/Antisy_Training/">Antisyphon Training</a> May 30.

Due to my own laziness, students will get ALL the material (slides, VMs, lab guides, etc.) from my full 8 hr class by the same name. 

Register➡️pwyc.ridgebackinfosec.com
Dylan🛡AttacktheSOC (@dylaninfosec) 's Twitter Profile Photo

It'd be really cool if the Defender 'Tune alert' feature had a preview of impacted alerts. Sorta kinda like the new CAP 'View policy impact', get an idea on whether or not your logic is right by using historical alerts

Steven Lim (@0x534c) 's Twitter Profile Photo

📢 Calling all KQL Practitioner Kusto Detective Agency returns with a new challenge called "Call of the Cyber Duty". Register Now: detective.kusto.io/register #KustoDetectiveAgency #KDA #CallOfTheCyberDuty

📢 Calling all KQL Practitioner

Kusto Detective Agency returns with a new challenge called "Call of the Cyber Duty".
Register Now: detective.kusto.io/register

#KustoDetectiveAgency #KDA #CallOfTheCyberDuty
Dylan🛡AttacktheSOC (@dylaninfosec) 's Twitter Profile Photo

This is a great example of improving detection fidelity. When you get an ask to create a detection for X, ask yourself, as the one who will likely action it, does it make sense to alert on this? Improve on the base request so it’s not another FP you ignore every time it triggers.

Aura (@securityaura) 's Twitter Profile Photo

Finally took the time to write a quick blog post on my #100DaysOfKQL challenge. medium.com/@securityaura/… The tl;dr is that I'm never doing anything like this again, at least, not before I have a LOT more free time than I have now. But very happy to have gone through with it!

ᴍɪᴄʜᴀʟɪs ᴍɪᴄʜᴀʟᴏs (@cyb3rmik3) 's Twitter Profile Photo

Next Tuesday, May 27th Christos Galanopoulos and I will join my dear fellows Alex Verboon and Gianni at this month's 𝐊𝐐𝐋 𝐂𝐚𝐟𝐞. Christos Galanopoulos and I worked over the past couple of months on 𝐬𝐊𝐚𝐥𝐞𝐐𝐋, a tool that allows query automation on your log

Dylan🛡AttacktheSOC (@dylaninfosec) 's Twitter Profile Photo

Currently, where does your Custom Detection strategy sit? For the sake of the poll assume each choice leads to the generation of 1 Incident #XDR #Sentinel