Maximilian Larum
banner
0xm4xdf1r.bsky.social
Maximilian Larum
@0xm4xdf1r.bsky.social
SOC Manager at Coop Norge | GCFE | GCFA | GPEN | BTL1 | Coin hoarder | Lethal Forensicator #DFIR
Reposted by Maximilian Larum
Extracting Files Embedded Inside Word Documents https://isc.sans.edu/diary/31486
December 3, 2024 at 7:15 AM
Reposted by Maximilian Larum
Happy Cyber Monday! 🎉 A brand-new 13Cubed episode on NTFS FILE record reuse is out now. Dive into the details and don’t forget—today’s the final day to save 13% on all 13Cubed training courses with code BLACKFRIDAY2024. Ends at 00:00 UTC Dec 3.

www.youtube.com/watch?v=6LpJ... #DFIR
NTFS FILE Record Reuse
YouTube video by 13Cubed
www.youtube.com
December 2, 2024 at 12:45 PM
Reposted by Maximilian Larum
Thanks to LLMs, I no longer have to ever relearn regex. That alone is worth $20/month.
November 30, 2024 at 5:56 PM
Wish @bsky.app had a Save Post / Read later feature 🤔
December 1, 2024 at 8:48 AM
This one was so much fun!

A bit of pcap analysis, some memory forensics and some binary analysis!

#DFIR #btlo

blueteamlabs.online/achievement/...
Completed Latent! - Blue Team Labs Online
I have just completed Latent on Blue Team Labs Online! A gamified platform for cyber defenders to test and showcase their skills. Join for free at blueteamlabs.online/register
blueteamlabs.online
November 27, 2024 at 9:10 AM
Found a repo with InfoSec Black Friday deals, including training platforms, courses, tools, and more 🥷
It looks like a well-curated and pretty extensive list!
#infosec #dfir #cyber

github.com/0x90n/InfoSe...
GitHub - 0x90n/InfoSec-Black-Friday: All the deals for InfoSec related software/tools this Black Friday
All the deals for InfoSec related software/tools this Black Friday - 0x90n/InfoSec-Black-Friday
github.com
November 27, 2024 at 8:09 AM
Anyone else experiencing huge delays and http errors from #microsoft #defender #XDR portal?
November 25, 2024 at 10:36 AM
November 17, 2024 at 7:44 PM
Reposted by Maximilian Larum
The Free & Affordable Training site (training.dfirdiva.com) was created to help people find quality free and low cost training across various platforms. The main focus is #DFIR, #OSINT & Blue Team Training. Nothing listed is over $1,000.
Free and Affordable DFIR and Cybersecurity Training
Free and Affordable Training Resources with a Focus on DFIR / Blue Team. Digital Forensics, Incident Response, Malware Analysis, OSINT, Programming, Linux, and more.
training.dfirdiva.com
November 15, 2024 at 3:32 PM
Reposted by Maximilian Larum
New here? Check out my one stop shop of #DFIR resources startme.stark4n6.com
November 12, 2024 at 2:16 PM
I found out about MemProcFS at the DFIR summit in Prague, love it!
November 15, 2024 at 7:20 AM
Prefetch files capture app execution data—timestamps, filenames, usage counts—and track accessed files/folders, offering insights into user activity and potential suspicious behavior.

Location: C:\Windows\Prefetch
Parsing tool: github.com/EricZimmerma...
💼🔍
#DFIR
November 15, 2024 at 7:13 AM