jordan drysdale (@rev10d) 's Twitter Profile
jordan drysdale

@rev10d

ID: 4884066409

calendar_today09-02-2016 17:20:01

216 Tweet

671 Followers

508 Following

Tony Hawk (@tonyhawk) 's Twitter Profile Photo

I once skated through the NYSE because trading on the floor was too intimidating. Investing in the stock market is scary if you aren’t an expert or don’t have money to burn. But Public is changing the game; the app allows you to invest small amounts in publicly traded companies

Wild West Hackin' Fest (@wwhackinfest) 's Twitter Profile Photo

The "Cloud Pentesting" Roundup is well nigh upon us. Join us on December 10! Beau Bullock will MC. Presenters include Dirk-jan, Jon Helmus, Ohm-I (Oh My), Andrew Krug, and elitest. Attendees register for free. Learn more here: wildwesthackinfest.com/the-roundup/cl…

Anthony Randazzo (@amrandazz) 's Twitter Profile Photo

Mapped all of the Amazon GuardDuty Findings to ATT&CK. A bit more of an art than a science. Hopefully useful to some detection and response teams out there. See 🧵for more detail 👇

Mapped all of the Amazon GuardDuty Findings to <a href="/MITREattack/">ATT&CK</a>. A bit more of an art than a science. Hopefully useful to some detection and response teams out there. See 🧵for more detail 👇
Black Hills Information Security (@bhinfosecurity) 's Twitter Profile Photo

***NEW*** BHIS | Tester's Blog Azure Security Basics: Log Analytics, Security Center, and Sentinel by: jordan drysdale Published: 11/24/2020 Learn more: blackhillsinfosec.com/azure-security…

Black Hills Information Security (@bhinfosecurity) 's Twitter Profile Photo

***NEW*** BHIS | Tester's Blog Azure Sentinel Quick-Deploy with Cyb3rWard0g’s Sentinel To-Go - Let’s Catch Cobalt Strike! by: jordan drysdale Published: 12/2/2020 Learn more: blackhillsinfosec.com/azure-sentinel…

Roberto Rodriguez 🇵🇪 (@cyb3rward0g) 's Twitter Profile Photo

💥😱 James Forshaw added "named pipe RPC client transport" to NtObjectManager 🔥 Thank you very much James for all your work 👏! I'll create PS scripts to cover a few scenarios 🍻 (Img 4) If anyone would like to help me, let me know 😉 Open Threat Research github.com/Cyb3rWard0g/Wi…

💥😱 <a href="/tiraniddo/">James Forshaw</a> added "named pipe RPC client transport" to NtObjectManager 🔥 Thank you very much James for all your work 👏!

I'll create PS scripts to cover a few scenarios 🍻 (Img 4)

If anyone would like to help me, let me know 😉 <a href="/OTR_Community/">Open Threat Research</a> 

github.com/Cyb3rWard0g/Wi…
Defensive Origins (@defensiveogs) 's Twitter Profile Photo

Fresh on the blog today: "A Sysmon Event ID Breakdown" defensiveorigins.com/a-sysmon-event… jordan drysdale #infosec #sysmon #sysinternals #logging #threatoptics #cybersecurity

Fresh on the blog today: "A Sysmon Event ID Breakdown"

defensiveorigins.com/a-sysmon-event…

<a href="/Rev10D/">jordan drysdale</a> #infosec #sysmon #sysinternals #logging #threatoptics #cybersecurity
Olaf Hartong (@olafhartong) 's Twitter Profile Photo

Sysmon 13 has just been released. I’ve just published a detailed look at the new ProcessTampering feature in a blog. medium.com/falconforce/sy… #DFIR #Infosec #Sysmon

Defensive Origins (@defensiveogs) 's Twitter Profile Photo

Applied Purple Teaming will be offered only once this year, so unless you plan on waiting until 2022 to join us for APT, you'll want to register ASAP. Registration closes this Wednesday (1/27): defensiveorigins.com/trainings/ #infosec #purpleteam #blueteam #redteam #cybersecurity

𝘚𝘢𝘭𝘷𝘢𝘵𝘰𝘳𝘦 𝘊𝘢𝘮𝘱𝘰𝘭𝘰 ֎ (@totocellux) 's Twitter Profile Photo

#ThreatHunting: A #Sysmon Event ID Breakdown bit.ly/3acUlkm-Ttx Olaf Hartong jordan drysdale Black Hills Information Security 𝞝 #Enterprises #Organizations #ThreatHunting #Hacking #InfoSec #CyberAttacks #LateralMovements #CyberSecurity #WMIC #ClipBoard #Passwords #MitreAttack #MSDefender

#ThreatHunting: A #Sysmon Event ID Breakdown
bit.ly/3acUlkm-Ttx
<a href="/olafhartong/">Olaf Hartong</a> <a href="/Rev10D/">jordan drysdale</a> <a href="/BHinfoSecurity/">Black Hills Information Security</a>
𝞝
#Enterprises #Organizations
#ThreatHunting  #Hacking
#InfoSec #CyberAttacks
#LateralMovements
#CyberSecurity  #WMIC
#ClipBoard  #Passwords
#MitreAttack  #MSDefender
blueteamblog (@blueteamblog) 's Twitter Profile Photo

Red teams / pen testers etc. What one thing can blue teams do to make your life more difficult? What do you come across and think “Damn, they did that”?

Blake Regan (@crash0ver1d3) 's Twitter Profile Photo

@cillic Sysmon, 25 event IDs, better visibility vs. traditional Windows Logging. Great blog on Sysmon Logging and EventIds, with the new Event Id 25, Process Tampering, written by jordan drysdale blackhillsinfosec.com/tag/sysmon/