Daniel Stinson (@shellcromancer) 's Twitter Profile
Daniel Stinson

@shellcromancer

Threat Detection & Response @ Brex, xCloudflare. Hobbyist reverse engineer of things. Dogs are clearly better than people.

ID: 1010016717232173057

linkhttps://shellcromancer.io/ calendar_today22-06-2018 04:28:45

368 Tweet

1,1K Followers

2,2K Following

evan j (@ejcx_) 's Twitter Profile Photo

Today RunReveal is announcing support for sigma detections and open sourcing our sigma rule evaluator, sigmalite. Read the blog, and check out the code! sigmalite.dev blog.runreveal.com/introducing-si…

Daniel Stinson (@shellcromancer) 's Twitter Profile Photo

The latest OCSF release has some IAM goodies. It's almost as if identity is the new perimeter 💡 * Group Management: handles subgroups now! (I helped with this one 🎉) * new IAM Analysis Finding class, and many new dictionary items related to identities github.com/ocsf/ocsf-sche…

Daniel Stinson (@shellcromancer) 's Twitter Profile Photo

🆕 YARA module this week: Chrome extension bundles! Would be pretty cool to add Mandiant's Permission Hash to the module's output for pivoting fun! Secure Annex exposes Permhash's in their UI/API so this would be a nice CLI format

🆕 YARA module this week: Chrome extension bundles! 

Would be pretty cool to add Mandiant's Permission Hash to the module's output for pivoting fun! <a href="/secureannex/">Secure Annex</a>  exposes Permhash's in their UI/API so this would be a nice CLI format
tuckner (@tuckner) 's Twitter Profile Photo

Cursor is now using Open VSX to install code editor extensions from. You must understand the implications of this right now. There has been an attack campaign happening for more than a month with extensions that install ScreenConnect. Below is ANOTHER example.

Daniel Stinson (@shellcromancer) 's Twitter Profile Photo

Some days I worry about AGI taking my job, other days I know I'm safe for a few years... Both gpt-5-codex high, and Claude Code both spun their wheels for 15+ minutes pointing to a compiler toolchain issues even given a git commit where the issue must be... this was the fix!

Some days I worry about AGI taking my job, other days I know I'm safe for a few years...

Both gpt-5-codex high, and Claude Code both spun their wheels for 15+ minutes pointing to a compiler toolchain issues even given a git commit where the issue must be... this was the fix!