Timur Zinniatullin (@zinint) 's Twitter Profile
Timur Zinniatullin

@zinint

@ISC2 CISSP | @MicroFocus ArcSight CSE & community groups admin (t.me/ArcSightChat & t.me/ArcsightRussia)

ID: 1166664428437286912

calendar_today28-08-2019 10:51:28

32 Tweet

68 Followers

95 Following

John Lambert (@johnlatwc) 's Twitter Profile Photo

If you missed the first #ATTACKCon, let me catch you up in this thread: First, YES IT WAS RECORDED👍: ▫️Day 1 Morning: youtube.com/watch?v=NVgqx7… ▫️Day 1 Afternoon: youtube.com/watch?v=9Uhupy… ▫️Day 2 Morning: youtube.com/watch?v=LxzVtf… ▫️Day 2 Afternoon: youtube.com/watch?v=4saExq…

hack_lu (@hack_lu) 's Twitter Profile Photo

In 2020, the conference will take place from the 20th until the 22nd of October. But also: * Blackhoodie: 17th - 19th * MISP (@[email protected]) summit: 19th * ATT&CK: 23rd And if you want to (re)watch the talks: administraitor.video/edition/Hack.l… (thanks to Cooper)

John Hubbard (@sechubb) 's Twitter Profile Photo

The coolest chart I saw at #ATTACKcon yesterday: techniques covered by data source (thanks Andy Applebaum)! Though there's some nuance/interpretation required here, overall this helps make a great case for the importance of process creation logging and many network data sources.

The coolest chart I saw at #ATTACKcon yesterday: techniques covered by data source (thanks <a href="/andyplayse4/">Andy Applebaum</a>)! Though there's some nuance/interpretation required here, overall this helps make a great case for the importance of process creation logging and many network data sources.
Gynvael Coldwind (@gynvael.bsky.social) (@gynvael) 's Twitter Profile Photo

Paged Out! #2 (Nov 2019) is out! And it's free to download :) pagedout.institute/?page=issues.p… This issue has 55 articles in 11 categories: Programming OS Internals Assembly Operating Systems GameDev Electronics Security/Hacking SysAdmin Reverse Engineering Algorithms Writing Articles

Paged Out! #2 (Nov 2019) is out! And it's free to download :)
pagedout.institute/?page=issues.p…
This issue has 55 articles in 11 categories:
Programming
OS Internals
Assembly
Operating Systems
GameDev
Electronics
Security/Hacking
SysAdmin
Reverse Engineering
Algorithms
Writing Articles
Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

Just recently I recommended Cliff Stoll’s book ‘The Cuckoo’s Egg’ If your “want to read” book 📚 stack is as high as mine, you can watch Cliff’s keynote of CrowdStrike’s conference in Nov17 to get a summary or the right mood to finally start the book 😁 youtu.be/ddAtMMDeeq8

Roberto Rodriguez 🇵🇪 (@cyb3rward0g) 's Twitter Profile Photo

Looking for anything to do this weekend? 😊 ATT&CK open sourced its website code & I created a Docker image to automate the installation and help others in the community to start playing with it! 🍻💜 Docker Image: github.com/hunters-forge/… Docs: blacksmith.readthedocs.io/en/latest/atta…

Looking for anything to do this weekend? 😊 <a href="/MITREattack/">ATT&CK</a> open sourced its website code &amp; I created a Docker image to automate the installation and help others in the community to start playing with it! 🍻💜

Docker Image: github.com/hunters-forge/…
Docs: blacksmith.readthedocs.io/en/latest/atta…
Ring3API 🇺🇦 (@ntlmrelay) 's Twitter Profile Photo

⚙️Account Logon Flow / Process (#Windows) v0.1 📕[PDF]:speakerdeck.com/rimpq/account-… 🔗[DIRECT]:speakerd.s3.amazonaws.com/presentations/… ...for self understanding logon flow / process in windows system. Special thanks to Andrei Miroshnikov💪 "Find Evil – Know Normal" #SANS #threathunting #blueteam

⚙️Account Logon Flow / Process (#Windows) v0.1
📕[PDF]:speakerdeck.com/rimpq/account-…
🔗[DIRECT]:speakerd.s3.amazonaws.com/presentations/…
...for self understanding logon flow / process in windows system. Special thanks to Andrei Miroshnikov💪
"Find Evil – Know Normal" #SANS
#threathunting #blueteam
Florian Roth ⚡️ (@cyb3rops) 's Twitter Profile Photo

We've got a huge pending pull request on our Sigma repo from many different contributors created during the OSCD sprint in October this year Pull request from `oscd` branch github.com/Neo23x0/sigma/… OSCD Sigma Sprint oscd.community

We've got a huge pending pull request on our Sigma repo from many different contributors created during the OSCD sprint 
in October this year 

Pull request from `oscd` branch
github.com/Neo23x0/sigma/…

OSCD Sigma Sprint
oscd.community
Grzegorz Tworek (@0gtweet) 's Twitter Profile Photo

1. Create file containing only "0". 2. Check the digital signature with #PowerShell 3. Observe your file is properly signed by Microsoft. Are you still thinking that digital signatures are complicated? :D

1. Create file containing only "0".
2. Check the digital signature with #PowerShell
3. Observe your file is properly signed by Microsoft.
Are you still thinking that digital signatures are complicated? :D
ATT&CK (@mitreattack) 's Twitter Profile Photo

Looking to up your game on using ATT&CK for #CTI? Katie Nickels and Adam Pennington recently recorded the ATT&CK for CTI training that they created and taught to multiple audiences over the past year. Exercises and links to the videos are now up at attack.mitre.org/training/cti.

John Lambert (@johnlatwc) 's Twitter Profile Photo

Community based defense is a universal message. Thanks to the Russian infosec community who translated my post on the Githubification of InfoSec 🙏 🆕habr.com/en/post/487584/ How did it happen? By a pull request how else! Special thanks to Dan for leading the effort.

Community based defense is a universal message. Thanks to the Russian infosec community who translated my post on the Githubification of InfoSec 🙏

🆕habr.com/en/post/487584/

How did it happen? By a pull request how else!  Special thanks to <a href="/yugoslavskiy/">Dan</a> for leading the effort.
Timur Zinniatullin (@zinint) 's Twitter Profile Photo

Got my first ever report resolved on HackerOne - hackerone.com/reports/881004, nothing special but it's a start anyway (: Thanks to yaworsk "Web Hacking 101", to PortSwigger "Web App Hacker's Handbook", OWASP® Foundation for the testing guide, and STÖK ✌️ for inspiration! #bugbounty

Timur Zinniatullin (@zinint) 's Twitter Profile Photo

I've earned the Throwback Badge on TryHackMe for Hacking Throwback by exploiting a Windows AD network tryhackme.com/zinin/badges/t… #tryhackme by

Thomas Patzke (@blubbfiction) 's Twitter Profile Photo

Just merged the huge OSCD pull request into the Sigma master branch. Lots of new and improved rules. Big thanks to all contributors, it was a pleasure to review!