Audra Streetman

Senior Threat Intelligence Analyst at Splunk

Audra Streetman boosted:
2025-05-12

CISA's initial email announcement reducing public-facing security products preserved RSS feeds. But the website language has been updated to drop RSS as a remaining source.

The stated reasoning ("CISA wants this critical information to get the attention it deserves and ensure it is easier to find") is ... specious at best.

Even if we stipulate that keeping the general website less noisy is a net win, they could just ... provide a different web page? And it would be trivial to also create a separate RSS feed just for the vulnerability announcements. The automation is clearly already there and would be relatively easy to modify.

The actual reasoning is different from the stated reasoning, and is left as an exercise for the reader.

Edit: Jerry is setting up an email-to-Mastodon shim here!

infosec.exchange/@cisareflector

... which can then be followed as an RSS feed:

infosec.exchange/@cisareflecto

#CISA

Screenshot of email from CISA, with phrase "only be shared through CISA social media platforms, email, and RSS feeds and will no longer be listed"Screenshot of CISA news alerts entry, with phrase "only be shared through CISA social media platforms and emai and will no longer be listed"
Audra Streetman boosted:

When incidents hit, how you communicate can shape the outcome.

This week’s THOR Collective Dispatch features @audrastreetman, former journalist turned cyber intel analyst.

dispatch.thorcollective.com/p/

#cybersecurity #incidentresponse #communication #infosec #THORcollective #thrunting

Audra Streetman boosted:
2025-04-15

Wow. CVE database is in serious trouble, tomorrow.

The cyber industry as a whole is in trouble also really, it’s the elephant in the room - the collapse of the White House’s support for cybersecurity is obvious and pronounced due to widespread cutbacks.

Audra Streetman boosted:

✨Representation is a security issue✨
Check out this THOR Collective Dispatch on why cyber needs more women and intersectional diversity.

Read it here: dispatch.thorcollective.com/p/

#cybersecurity #dei #womenincyber #representationmatters #inclusivesecurity #thrunting #THORcollective

Audra Streetman boosted:
2025-03-26

Bleeping Computer say multiple Oracle customers confirm their customer data has been stolen. Oracle continue to deny there is a problem.

bleepingcomputer.com/news/secu

Audra Streetman boosted:

Last week THOR Collective Dispatch covered blind purple teaming. This week? Full transparency. Red & Blue sharing every move, learning together in real time.
💜
Check it out: dispatch.thorcollective.com/p/

#purpleteaming #threathunting #thrunting #cybersecurity #infosec

2025-01-22

Registration is open for the SANS New2Cyber Summit on March 13! The free virtual event is for anyone new to #cybersecurity or looking to level up their skills. I'm presenting at 4:25pm ET about my career change from local TV news to cyber threat intelligence:
sans.org/cyber-security-traini

2024-11-13

Threat hunters - if you haven't already, check out HEARTH (the Hunting Exchange and Research Threat Hub). It's a new, community-driven repository for hunt ideas, methodologies, and research:

github.com/triw0lf/HEARTH

#cybersecurity #infosec

2024-08-30

The August Staff Picks for Splunk Security Reading blog is out with the #cybersecurity news and research we found most interesting this month:
splunk.com/en_us/blog/security

2024-07-24

Ep. 2 of The Security Detail is out! This week, @Lawyerliz, founder of Silver Key Strategies, discusses her research using large language models (LLMs) to analyze SEC 8-K filings and other public reporting to gain #cybersecurity insights.
thesecuritydetail.podbean.com/

2024-07-10

Season 3 of The Security Detail is here! In our first episode, hear from Tom Marsland, board chair of VetSec, about how the non-profit helps veterans and transitioning military members find careers in cybersecurity.

thesecuritydetail.podbean.com/

2024-05-30

The May Staff Picks for Splunk Security Reading blog is out with the #cybersecurity news and research we found most interesting this month:
splunk.com/en_us/blog/security

2024-05-06

ICYMI: @DavidJBianco had a great talk at #RSAC this morning about how Splunk's PEAK threat hunting framework improves upon Sqrrl, a framework he also helped develop. techtarget.com/searchsecurity/
#cybersecurity

2024-04-29

In the final episode of season 2 of The Security Detail, hear from past interview guests about the skills they think will be most import in the future for cybersecurity professionals. Here's one excerpt from Adam Pennington who leads the MITRE ATT&CK project.

You can listen to the full episode here: thesecuritydetail.podbean.com/

#cybersecurity #infosec

2024-04-24

The April Staff Picks for Splunk Security Reading blog is out with the #cybersecurity news and research we found most interesting this month:
splunk.com/en_us/blog/security

2024-04-17

ICYMI: Episode 8 of The Security Detail features predictions from past interview guests about the future of emerging technologies like generative AI and quantum computing.

You can listen to the full episode here:
thesecuritydetail.podbean.com/

#cybersecurity #ai #quantumcomputing

2024-04-03

ICYMI: Adam Pennington (@_whatshisface) recently joined The Security Detail to talk about the origins of MITRE ATT&CK and how to leverage the framework for adversary emulation and red teaming. You can listen to the full episode here:
thesecuritydetail.podbean.com/

#cybersecurity

Audra Streetman boosted:
David J. Bianco (He/Him)DavidJBianco@infosec.exchange
2024-04-03

The @sansinstitute published their annual threat hunting survey recently, and I found something very surprising in it. Here's me to tell you all about it.

2024-04-01

The March Staff Picks for Splunk Security Reading blog is out with the #cybersecurity news and research we found most interesting last month:

splunk.com/en_us/blog/security

2024-03-27

Ep. 7 of The Security Detail is out! This week Adam Pennington (@_whatshisface) tells us about the origin and evolution of MITRE ATT&CK and how organizations can best leverage the framework:

thesecuritydetail.podbean.com/
#cybersecurity

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst