Mark Bereza ๐บ๐ฆ
@ropsicle
Vulnerability researcher, ethical hacker, and professional squatter. Part of Cisco Talos.
ID: 753824775663779840
15-07-2016 05:33:26
754 Tweet
188 Takipรงi
153 Takip Edilen
To paraphrase PL ๐ค๐ฆ๐ค, we've entered the next phase of our character ARC >:)
"If a target is vulnerable, it doesnโt matter whether the vulnerability is unknown or has been known for decades. A bad actor can still use it for nefarious purposes." - Charles McFarland, Trellix Advanced Research Center (@TrellixLabs) go.trellix.com/3QVFFcN
Which vuln is giving red teams and malware groups alike a taste of their own medicine? Which bugs received a CVSS score of 9.8? Find out in the Trellix Advanced Research Center September Bug Report, from Charles McFarland: go.trellix.com/3ecMMjv
Senior Principal Security Researcher Richard Johnson (Richard Johnson) will be at Cybersecurity Outlook 2023 presenting his research on #eBPF for Windows. Be sure to catch his keynote on Tuesday, 12/13 @ 2:30pm EST!
Make 2023 the year you consistently update your software. In the January Bug Report, Jesse Chick explores three CVEs we spotted in the wild, who is impacted and what to do about it. bit.ly/3jo0aUH
Just how severe is "Severity: High"? John Dunlap and I take a stab at assessing the actual threat CVE-2023-0286, a type confusion in OpenSSL, poses to organizations
Our latest blog explores CVE-2023-23397, an Outlook security vuln observed in the wild which allows bad actors to leak NTLMv2 hashes. Mark Bereza ๐บ๐ฆ and John Dunlap explain how to detect if your organization is affected and how to mitigate harm. bit.ly/3Ft9s9N
The wait is finally over! Our new SANS Offensive Operations class on Combating #SupplyChainAttacks with Product Security Testing is now open for registration! Join me and Ismael Valenzuela in June to learn how to analyze risk of using new hardware and software! sans.org/cyber-securityโฆ
Join me and Ismael Valenzuela on Friday for a technical conversation on how to make sure you are ahead of the curve in protecting your organizations from current threats!