Profile avatar
secshoggoth.bsky.social
Incident Response, Forensics, Malware Analysis, Reverse Engineering, Cyber Security, RPG, Geek, Nerd, #DFIR Opinions are my own and not those of my employer.
13 posts 517 followers 65 following
Getting Started

I've had to analyze several MS Quick Assist compromises and found challenges during each one. Threat Hunting for malicious activity thru QA is not easy either. So I wrote a blog post on what to look for: inversion6.com/resources/bl... #dfir #forensics #incidentresponse #threathunting

Today marks the official launch of the Inversion6 Incident Response (IR) team, and I couldn't be more excited! Ready to tackle challenges, protect, and respond like never before. Let’s go! #IncidentResponse #CyberSecurity #DFIR inversion6.com/resources/ne...

I do not envy those coming into Information Security now. When I started, there were no formal programs, no degrees, and little training. It was the wild west and we were making a lot of it up as we went. In a way, it was easier. (1/2)

What is everyone's favorite place for a starting sysmon config template?

@volexity.com’s latest blog post describes in detail how a Russian APT used a new attack technique, the “Nearest Neighbor Attack”, to leverage Wi-Fi networks in close proximity to the intended target while the attacker was halfway around the world.    Read more here: www.volexity.com/blog/2024/11...

Yesterday I received a call from a friend who was a victim of sextortion. This is all too common but fortunately there are things you can do if you fall victim to this. Remember 𝘆𝗼𝘂 𝗮𝗿𝗲 𝗻𝗼𝘁 𝗮𝘁 𝗳𝗮𝘂𝗹𝘁. The person doing this is truly one of the worst types of criminals. You are a victim. 🧵

What's one more social media site to check out?