Profile avatar
esheesle.bsky.social
Infosec practitioner; Co-creator of the MITRE ATT&CK Framework Mastodon: http://infosec.exchange/@esheesle
19 posts 59 followers 58 following
Regular Contributor
Conversation Starter

American farm exports were worth $179 billion in 2022

The NYT has published a useful graphic showing all the agencies with investigations into or regulatory battles with of Musk's companies that have seen staffing cuts, including the firing of top officials. https://www.nytimes.com/2025/02/11/us/politics/elon-musk-companies-conflicts.html

I just lost my job, along with most of my coworkers, due to the illegal grant freeze. I worked at an organization that -helped veterans who have lost a limb -Assisted elderly and disabled people -Helped hospitals better treat people who have lost limbs

I set up an Inoreader job to create an RSS feed from the White House exec order sub-site b/c there is no direct one. I've re-published it so anyone can use it to keep an eye on EOs: www.inoreader.com/stream/user/...

You may not like it, but this is what peak performance looks like.

We've had ATT&CKcon 5.0 videos and slides out for a bit now, but our conference archive page is also up now organizing them in one place. Check out all of this year's content, including Lightning and Couch talks or any previous ATT&CKcon. attack.mitre.org/resources/at...

We're witnessing the evolution of ransomware. Yesterday someone informed us of the existence of the new TTP of AWS S3 extortion. More specifically, Threat Actors abusing the Amazon Key Management Service (KMS) to encrypt company AWS buckets (or any cloud provider).

Remember to leave all your ports open tonight so Santa can leave you presents

That explains it!

Managed to get to Ocean City #Maryland to check out the holiday lights. One son was under the weather so chilled a lot in the hotel but still said he enjoyed the break from home. Lots of carry out food for us, but good break from life.

For anyone interested in detection and prevention methods against Salt Typhoon intrusions targeting communication providers, here is a comprehensive guide: media.defense.gov/2024/Dec/03/...

I spoke to Alexis Alley from the ​CyberPeace Institute​ at the #thehaguebeyond125 about the cybersecurity challenges faced by nonprofits. #CommonGoodCyber @craignewmark.bsky.social @gca.bsky.social

Today we give thanks for the ability to over eat. For those of us who are technically inclined and getting together with others, we also give thanks for any gathering that doesn't include "so I clicked this link and my computer is acting strange"

So damn true 💯

For those using Bluesky (on Android) and missing the ability to resume timeline position when opening the app, I'd suggest trying Skywalker. Not perfect, but pretty darn good.

PSA

Essentially assume disaster and have the right defensive and response actions ready to prevent the worst case scenario. Then have delicious fried turkey, so worth the effort.

Almost time for frying some turkey. To avoid a situation like the below, take a Infosec (defense in depth) approach to safety: - thawed and dried turkey - fire extinguisher - don't fry it in or very near the house - don't just drop the turkey in - ***get the oil heated, then turn off the burner

We’re excited to introduce our new TAXII server and the latest addition to the ATT&CK Workbench software suite: the MITRE ATT&CK Workbench TAXII 2.1 Server: medium.com/mitre-attack...