TechRonick's profile picture. DFIR history, moved into Cyber Threat Intelligence. GCTI, GCFA, GCIA

Ron Woolery

@TechRonick

DFIR history, moved into Cyber Threat Intelligence. GCTI, GCFA, GCIA

Ron Woolery hat repostet

Okta is a symptom of a larger issue: too many orgs have outsourced their root of trust to a third party and have NO MECHANISM to detect abuse. Be real: the only reason we know about this one is because the threat actor targeted top tier orgs who caught them, not because Okta did


Ron Woolery hat repostet

You should be aware of the term "harvest now, decrypt later". At some point, the encryption we use today will be easily crackable. Don't rely too heavily on it. Better to be very protective of where your data ends up, even if it's encrypted.


Ron Woolery hat repostet

Here comes a new blog, In this one I've uncovered a new underground info stealer type malware "KrakenKeylogger". The blog will cover the Phishing campaign alongside with the execution chain, loader and injection process and overview of the malware capabilities (with some quick…

0xToxin's tweet image. Here comes a new blog, 
In this one I've uncovered a new underground info stealer type malware "KrakenKeylogger".
The blog will cover the Phishing campaign alongside with the execution chain, loader and injection process and overview of the malware capabilities (with some quick…

Ron Woolery hat repostet

I’ve been laid off! I’d be a great fit for the following roles: 🔥CTI Analyst 🔥Hunt 🔥CTI Manager 8 GIAC Certs + MBA IT Management + DSc Cybersecurity 5 + years of CTI/Hunt experience Thank you!


Ron Woolery hat repostet

So much of vendor selection is being able to articulate value proposition in absolutes ("I've done it before, it's simple with X"). The first vendor in a category to give free advanced training on their products will own their market inside of 36 months. 2/2


Ron Woolery hat repostet

Elon To Stay As Twitter CEO After Counting Mail-In Votes babylonbee.com/news/elon-to-s…


Ron Woolery hat repostet

Insert commas into your password so when your credentials are dumped into a CSV it breaks it


Is @threatpost still in operation? I can’t find anything from them since late August.

TechRonick's tweet image. Is @threatpost still in operation? I can’t find anything from them since late August.

Ron Woolery hat repostet

This is quite... something.


regarding #log4jrce, this is a great site for an affected software list. Does anyone know who is responsible for the website, and running it? log4j.mwni.io


Ron Woolery hat repostet

You may not think CVE-2021-42292 can be detected at the network level, but our @Corelight_inc Labs team (big shout-out to @keithjjones @alexgkirk @ynadji @benreardon) shows you how on the blog today: corelight.com/blog/detecting… #CyberSecurity #DFIR #ThreatHunting #OpenNDR

corelight_inc's tweet image. You may not think CVE-2021-42292 can be detected at the network level, but our @Corelight_inc Labs team (big shout-out to @keithjjones @alexgkirk @ynadji @benreardon) shows you how on the blog today: corelight.com/blog/detecting… 
#CyberSecurity #DFIR #ThreatHunting #OpenNDR

Loading...

Something went wrong.


Something went wrong.