#SANS

2025-06-20

Looking at taking an OSINT course. Thinking about SEC497: Practical Open-Source Intelligence (OSINT)....anyone have any opinions?

#cyber #security #osint #sans #intel

Captain of the Royal Guard vs. A Cartoon Duck #undertale #gmod #undyne #daffyduck #looneytunes #papyrus #sans

Undyne threw a lot of spears all around Snowdin as she was furiously chasing down Daffy Duck.
El Fotoliptófono 🐘fotoliptofono
2025-06-05

Qué tal, faltan las mayúsculas y acentos básicos.

La imagen muestra una pantalla de un portátil con una mano visible sosteniendo el dispositivo. En la pantalla, se puede ver una ventana de un programa de diseño gráfico, Inkscape, con un diseño en silueta de letras sobrepuestas en la parte izquierda. Las letras sobrepuestas está representado en negro sobre un fondo blanco. En la parte derecha de la pantalla, hay un documento de texto con el título "El veloz murciélago" en español, que es una referencia a la famosa frase "El veloz murciélago volador" de la canción "The Entertainer" de Scott Joplin. El texto está en español y es ser parte de un proyecto de estudio de tipografía en curso. La imagen está tomada en un entorno oscuro, lo que dificulta la visibilidad de detalles adicionales.
Ichinin :verified: :verified_paw: ✅🎯🙄Ichinin@infosec.exchange
2025-06-03

A Question:

So i saw the #SANS #ransomware video ("Shaking up the Ransomware Game: Introducing Scattered Spider") where they mentioned that visibility into Hypervisors suck and that actors exploit #ESXi like there is no tomorrow. And thought i'd give my own defensive stuff a go.

My q is basically this:

  • Anyone know how to get their own binaries to run on ESXi? I tried my endpoint agent on #ProxMox and it ran just fine (attached pic), but ESXi implicitly prevents (unsigned) binaries from running.

Got to the point of finding esxcli software acceptance set --level=CommunitySupported which would allow this, but then i had to create my own .vib package to install and there is where everything ended as i have no clue how to get something signed so, i'm asking if any of you guys have had any experience with this.

Kind of hard to make develop stuff for ESXi if you have to sign every release you want to test.

Proxmox logs

What I'm getting from this SquareX SAN's presentation on "Browser-Native Ransomware" is that... we need to just do the basics. The basics being block ads, manage browsers (and extensions), and train users.

#sans #marketing #basics #ransomware

2025-05-24
2025-05-22

Yikes :ablobcatpopcorn:

#squarespace #NoThreatIntel

Update:

#squarespace resolved the issue in under 48 hours. I provided proof of my background in cybersecurity, my adherence to ethical standards related to my #FIRST and #SANS / #GIAC memberships and they unlocked my account.

I'm really surprised how professional the support was. :blobcatheart:

Das Bild zeigt eine E-Mail mit dem Titel "Wir haben bemerkt, dass auf Ihrem Konto verdächtige Domänenaufgabenerfassung stattgefunden hat." Es wird eine spezifische Domäne, "www.microsoft.live", genannt. Die E-Mail erfordert eine Registrierung eines Registrierungsinhabers und fordert eine Registrierungsgewährleistung durch eine Regierungsverleihung von Foto-IDs. Die zulässigen ID-Typen sind Fahrerlaubnis, Militärid, Reisepass und Aufenthaltstitel. Es wird erwähnt, dass die IDs redaktiert oder verschwommen werden können, solange der vollständige Name sichtbar ist und mit dem Namen auf dem Squarespace-Konto übereinstimmt. Die E-Mail bittet auch um eine Erklärung der Nutzung oder Absicht der Domain
battal merkhaber46
2025-05-17

Habervip habervip Uğur böceğinin şans getirdiğine dair inanç nereden geliyor? habervip.org/gundem/ugur-boceg Detay:habervip.org Takipte kalın

Andrea Lazzarottolazza
2025-05-09

Bella esperienza ieri a Milano, per il convegno organizzato da , , ed .

Ho avuto il grande piacere di tenere un intervento insieme a Paolo Dal Checco riguardo la Forensics.

La giornata è stata ricca di interventi, ed è stato bello notare come molti dei professionisti intervenuti fossero anche soci .

2025-04-23
Rod2ik 🇪🇺 🇨🇵 🇪🇸 🇺🇦 🇨🇦 🇩🇰 🇬🇱rod2ik
2025-04-22

Selon des informations de , la préfecture des -de-Seine donne des interros surprises aux -papiers

mediapart.fr/journal/france/20

Project Animeanime@jforo.com
2025-04-20

project-anime.com/1103514/ [Dusttale] Snowdin Sans Encounter | Complete 13 Minute Animation #animation #dustbelief #dusttale #ParadoxLiveTheAnimation #sans #UNDERTALE [Dusttale] Snowdin Sans Encounter | Complete 13 Minute Animation TURN ON CAPTIONS Release on Soundcloud: https …

[Dusttale] Snowdin Sans Encounter | Complete 13 Minute Animation
J. R. DePriest :verified_trans: :donor: :Moopsy: :EA DATA. SF:jrdepriest@infosec.exchange
2025-04-15

During a recent change management call, one of the app teams was talking about running Wireshark on their four app servers to capture an elusive authentication timeout event. They would have to filter for all traffic coming and going to all 16 of our domain controllers and were expecting to run it for up to 24 hours.
The networking team lead immediately spoke up and told them that would probably fill their hard drives and use all their RAM and they should probably rethink it.
The app team admitted they had no experience with Wireshark and were just following the advice of their vendor's tech support.
I asked them why they didn't just use tshark or dumpcap which is how I got roped into helping them with their change.
I was able to step in and help them use dumpcap instead of Wireshark. I built them a command that would create 50 MB pcap files and stop when it hit a total file count that was the equivalent to half of the available disk space (each server had the same amount of free space on the secondary drive).
I was proud of myself for being able to leverage the shit I've learned OTJ and via my SANS GIAC certifications.
It was a little thing, but it saved them a lot of trouble and possibly crashing their servers.
It's nice when teams can work together.

#InfoSec #Wireshark #tshark #dumpcap #SANS #GIAC

2025-04-12

52d 6h 38min 35secs then deltarune tomorrow

2025-04-11

@arn_fai
bonjour,
J'ai un soucis avec mon compte #sans-nuage, je n'ai plus accès à Matrix/Element. Quand j'essaie de me connecter, j'ai le message "Il y a eu un problème lors de la communication avec le serveur d’accueil, veuillez réessayer ultérieurement.(M_UNKNOWN)". Est-ce que d'autres personnes ont déjà eu ce problème ? Avez-vous une idée pour résoudre ce problème ?

#matrix

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst