J P
@jpoforenso
Threat Detection / Incident Response in the Cloud. Livin' on the *nix command line. I've got a fever, and the only prescription is more #DFIR.
ID: 2471617604
https://www.ponderthebits.com 30-04-2014 23:12:52
2,2K Tweet
1,1K Followers
218 Following
I have been (and remain) just absolutely enamored and fascinated with Windows Event Logs for #DFIR - in case you weren't aware from my historical blog posts :) Joachim Metz with yet again more fascinating insights into them. osdfir.blogspot.com/2021/10/common…
For the #AWS #DFIR folks charged with helping to protect, defend, and respond to this latest #log4j craziness - here's some info/tips. Remember, whenever possible, to leverage the power of the cloud to protect/defend the cloud. aws.amazon.com/blogs/security… aws.amazon.com/security/secur…
Looking to do Cloud (AWS) native forensic investigations? I am incredibly excited and proud to announce, through personal collaboration with Software Engineering Institute, the availability of CERT LiFTeR tools for Amazon Linux 2. forensics.cert.org/#amazonsupport Major thanks to Larry Rogers! #AWS #DFIR