Detailed breach analysis after 2023 ransomware attack. £14M fine. Which standards of care weren't met?
* Understaffed SOC (1 analyst/shift)
* 58hr SOC response vs. 4.5hr AD takeover
* Failure to implement Active Directory tiering.
ico.org.uk/media2/pv5nh...
Detailed breach analysis after 2023 ransomware attack. £14M fine. Which standards of care weren't met?
* Understaffed SOC (1 analyst/shift)
* 58hr SOC response vs. 4.5hr AD takeover
* Failure to implement Active Directory tiering.
ico.org.uk/media2/pv5nh...
aff-wg.org/2025/07/13/t...
(There is no benefit modulating my voice for anyone's comfort. This is my fair take, but unapologetic truth. This phenomena has gone unchecked for too long)
aff-wg.org/2025/07/13/t...
(There is no benefit modulating my voice for anyone's comfort. This is my fair take, but unapologetic truth. This phenomena has gone unchecked for too long)
tradecraftgarden.org/stackcutting...
The idea is to remove "bad frames" (e.g., non-image backed stuff) from a stack before calling a Win32 API. In the best cases, gives illusion of a full call stack.
tradecraftgarden.org/stackcutting...
The idea is to remove "bad frames" (e.g., non-image backed stuff) from a stack before calling a Win32 API. In the best cases, gives illusion of a full call stack.
Encrypt, mask, link, and decorate resources with meta-info(checksums, lengths, etc.) too.
Can use BOF-like PICOs from a DLL loader context too.
tradecraftgarden.org/docs.html#sp...
Encrypt, mask, link, and decorate resources with meta-info(checksums, lengths, etc.) too.
Can use BOF-like PICOs from a DLL loader context too.
tradecraftgarden.org/docs.html#sp...
The Tradecraft Garden.
tradecraftgarden.org
It's Crystal Palace, an open-source linker and linker script specialized to writing PIC DLL loaders.
And, a corpora of DLL loaders demonstrating design patterns building tradecraft with it.
The Tradecraft Garden.
tradecraftgarden.org
It's Crystal Palace, an open-source linker and linker script specialized to writing PIC DLL loaders.
And, a corpora of DLL loaders demonstrating design patterns building tradecraft with it.
I still think small steps, "straight stick" examples, shared VALUES, and a vision for shared WINS can overcome toxic ___? What to assign it to?
I still think small steps, "straight stick" examples, shared VALUES, and a vision for shared WINS can overcome toxic ___? What to assign it to?
H/T x.com/edskoudis/st...
H/T x.com/edskoudis/st...