
Christopher Witter
@mr_cwitter
PhD. Threat Hunting (School of Hard Knocks). Former Falcon Overwatch and DIB CSIRT. DFIR nerd, outdoor enthusiast, Maker. My thoughts are my own.
ID: 194687800
24-09-2010 19:11:25
1,1K Tweet
710 Followers
779 Following


ICYMI: Jaron Bradley joined @sechubb to discuss tips for finding persistence mechanisms and malicious processes in enterprise #macOS devices Listen here 👉🏾 sans.org/u/1mOS #BlueprintPodcast





My team recently converted our entire detection library to #SIGMA and created a wiki around it! We are an MSSP & platform agnostic, meaning we have a version of a rule for pretty much every SIEM & EDR platform there is, and... 🧵1/3 Img: Thomas Roccia 🤘










Our friends at SentinelOne were kind enough to hook us up and help us out. We have the opportunity to gift a talented researcher a valuable prize whereas without them the best we could do is a $5 coupon to Arbys. Submit your unique and novel research to s1.ai/vx-s1

