Show more

Via infosec.exchange feed: lucha.nyc/@ieatkillerbees/1099

ChatGPT and similar products are not "AI", they're fancy math. Still interesting and for well disciplined users, potential force-multipliers. They won't be replacing people anytime soon.

: day 59 : Two more sections of CRTO down. Tuned the registry run key search in Defender ATH. Noisy bugger, going to take some work to sort out "normal". Seems like a good place to hide for long-haul persistence.

: day 58 : Spent some time poking around log sources. Checked for logging and events matching oppsec warnings from CRTO. Created and tuned some queries for Defender ATH. There's signal in there about Registry run key creation and scheduled task creation. Good to know for and !

: day 57 : Finished the next section of CRTO. Juuust shy of half-way. Checked out a couple of presos at the Antisyphon "Most Offensive Con That Ever Offensived" on-line conference. I like the personalities and some of the dialogue in the panel discussion at the beginning. However, it was a little too "let's be controversial for the sake of controversy" for my taste. (I hope to get a pizza delivered to me, one day.)

Beautiful day today. Went 1.9 KM in 18’20”. Progeny was beat after school and needed veg time.

@Pinstryped Wow, that is fantastic. I hope the clown only took up enough of your time to amuse us.

Went for a 1.9 KM walk and got it done in 22 min. Progeny accompanied who was more interested in getting some sun than going fast. Reckon I'll try for two tomorrow, one for speed and a second w/kidlet again.

: day 55 : Completed three more sections, maybe about a 1/3 of the way through--so far, mostly review. Added another item to the list.

ath0 boosted

"Don't go around saying the world owes you a living. The world owes you nothing. It was here first."
Mark Twain

: day 54 : Completed credential theft section for , got some good ideas for for log events and access patterns I hadn't though of before.

Switching to SI units for my walks. Today I got in a 3.45 KM walk in 0:32:17, for a pace of 9’21”/KM. Reckon it’ll take some time to get a sense of what a “good” pace is. Main thing will to get quicker and breath easier on some of the hillier bits.

Since we see the previous post, theory CS doesn't like KQL seems to hold up.

: day 52 : Spent more time on CRTO, got through several sections. If something talks lsass, there's a Windows Event 4656 generated. These events don't make it into Windows Defender ATH. KQL that *might* help can be found here: infosec.exchange/@scottlink/10 (CS may not have like my KQL, so trying the link.) (Lsass does get started in the normal day-to-day of things, filter out it itself being the process, look for things trying to operate on it.)

: day 51 : Spent some time going through CRTO. First two sections down. Spun up a new kali box to play around with some of the tooling covered in recon section. Reckon I'll do a once through the material before getting lab time and going after the lab exercises.

Is still a thing? Got another walk in. Distance, 1.2 miles; Pace of 15 min/mi. I'm happy with that, since my last couple of walks were in the 20s. Colder out there than I anticipated, which incentivized my pace.

@bbbourq I've been using MSFT Authenticator to replace Google Authenticator. SecureID has one as well.

: day 50 : Grrr. Yesterday was actually day 49. Anyways. Signed up for zeropointsecurity.co.uk Certified Red Team Operator course. LFG!

: day 48 : even more . Read some on chapter 5. Watched a couple of videos by @[email protected] on his No Boilerplate YouTube channel. Poked around on crates.io a bit and looked at some code.

Show more

ath0

CounterSocial is the first Social Network Platform to take a zero-tolerance stance to hostile nations, bot accounts and trolls who are weaponizing OUR social media platforms and freedoms to engage in influence operations against us. And we're here to counter it.