(not)null
banner
notnotnull.bsky.social
(not)null
@notnotnull.bsky.social
cyber
Had the same view years ago but now I work w/many large orgs (fin, energy, tech) & DLP is a requirement for them. Catch is, they don't require preventative (nice to have), they just need to know how many times (and where) employees have published highly sensitive data, which I'm sympathetic too.
January 16, 2025 at 7:12 PM
No talk submission but I've been sitting on novel C2 technique I've observed a (likely) state actor use 5+ years ago that I've still to this day never seen discussed or published. The few researchers I've DM'd about it have also never seen it. Is there a place I can share this technique?
January 16, 2025 at 7:08 PM
My team would measure MTTR as the delta between Detection and Containment. True "Resolution" often requires months of changing upstream processes.
January 8, 2025 at 8:23 PM
Protected by JPEG™
January 8, 2025 at 8:13 PM
Ukrainian Cyber Alliance claiming responsibility. t.me/UCAgroup/38 "Ukrainian Cyber Alliance (UCA) was born where several groups including Trinity, FlaconsFlame, and later RUH8 with the sole purpose of actively challenging Russian cyber activities." Shout out vx-herm1t 🫡
Ukrainian Cyber Alliance
The Russian internet provider Nodex in St. Petersburg was completely looted and wiped. Data exfiltrated, while the empty equipment without backups was left to them
t.me
January 8, 2025 at 8:11 PM