Toosmooth's profile picture. Moved to Mastadon @toosmooth@infosec.exchange

Toosmooth

@Toosmooth

Moved to Mastadon @[email protected]

Toosmooth reposted

Are you on #Mastodon? If so, you can find us at infosec.exchange/@securityonion!


Toosmooth reposted

#SecurityOnion 2.3.180 now available! Featuring: ✅#Elastic 8.4.3 ✅#Suricata 6.0.8 ✅#Zeek 5.0.2 ✅New and improved #sysmon dashboards! Thanks to @markrussinovich and team for #sysmon! Need a #sysmon config? Check out @SwiftOnSecurity's! Blog post: blog.securityonion.net/2022/10/securi…

securityonion's tweet image. #SecurityOnion 2.3.180 now available!

Featuring:
✅#Elastic 8.4.3
✅#Suricata 6.0.8
✅#Zeek 5.0.2
✅New and improved #sysmon dashboards!

Thanks to @markrussinovich and team for #sysmon!

Need a #sysmon config? Check out @SwiftOnSecurity's!

Blog post:
blog.securityonion.net/2022/10/securi…
securityonion's tweet image. #SecurityOnion 2.3.180 now available!

Featuring:
✅#Elastic 8.4.3
✅#Suricata 6.0.8
✅#Zeek 5.0.2
✅New and improved #sysmon dashboards!

Thanks to @markrussinovich and team for #sysmon!

Need a #sysmon config? Check out @SwiftOnSecurity's!

Blog post:
blog.securityonion.net/2022/10/securi…
securityonion's tweet image. #SecurityOnion 2.3.180 now available!

Featuring:
✅#Elastic 8.4.3
✅#Suricata 6.0.8
✅#Zeek 5.0.2
✅New and improved #sysmon dashboards!

Thanks to @markrussinovich and team for #sysmon!

Need a #sysmon config? Check out @SwiftOnSecurity's!

Blog post:
blog.securityonion.net/2022/10/securi…
securityonion's tweet image. #SecurityOnion 2.3.180 now available!

Featuring:
✅#Elastic 8.4.3
✅#Suricata 6.0.8
✅#Zeek 5.0.2
✅New and improved #sysmon dashboards!

Thanks to @markrussinovich and team for #sysmon!

Need a #sysmon config? Check out @SwiftOnSecurity's!

Blog post:
blog.securityonion.net/2022/10/securi…

Steam Deck is awesome! It technically has the specs to run @securityonion Might be something good for next April?!? #ESM #NSM #SecurityOnion


Please take time to read the announcement. If you have questions please see our discussions page: securityonion.net/discuss

Security Onion Enterprise Features and Licensing blog.securityonion.net/2022/08/securi…



I hate computers


Toosmooth reposted

To date, we've helped 800+ schools and 150000+ students across all 50 states. But, there's a lot more work to do. This fundraiser is a chance for you to help and win some unique prizes.


Are you really doing security if you don't have a sankey? I think next we should add a pyramid graph with royalties paid to @DavidJBianco #pyramidofpain #SecurityOnion


Joining your analyst workstations to the grid in airgap environments allows you to keep them updated with the latest packages of each release. In non AG environments it allows you to use the same schedule for updates as the rest of the grid!

#SecurityOnion 2.3.120 now available! ✅Improvements for Cases, Analyst Desktop, and IDH! ✅Lots of bug fixes! ✅#CyberChef 9.37.3 ✅#Elastic 7.17.3 ✅#FleetDM 4.12.1 ✅#Suricata 6.0.5 ✅#Zeek 4.0.6 ✅#nginx 1.20.2 For more information, please see: blog.securityonion.net/2022/04/securi…

securityonion's tweet image. #SecurityOnion 2.3.120 now available!

✅Improvements for Cases, Analyst Desktop, and IDH!
✅Lots of bug fixes!
✅#CyberChef 9.37.3
✅#Elastic 7.17.3
✅#FleetDM 4.12.1
✅#Suricata 6.0.5
✅#Zeek 4.0.6
✅#nginx 1.20.2

For more information, please see:
blog.securityonion.net/2022/04/securi…
securityonion's tweet image. #SecurityOnion 2.3.120 now available!

✅Improvements for Cases, Analyst Desktop, and IDH!
✅Lots of bug fixes!
✅#CyberChef 9.37.3
✅#Elastic 7.17.3
✅#FleetDM 4.12.1
✅#Suricata 6.0.5
✅#Zeek 4.0.6
✅#nginx 1.20.2

For more information, please see:
blog.securityonion.net/2022/04/securi…
securityonion's tweet image. #SecurityOnion 2.3.120 now available!

✅Improvements for Cases, Analyst Desktop, and IDH!
✅Lots of bug fixes!
✅#CyberChef 9.37.3
✅#Elastic 7.17.3
✅#FleetDM 4.12.1
✅#Suricata 6.0.5
✅#Zeek 4.0.6
✅#nginx 1.20.2

For more information, please see:
blog.securityonion.net/2022/04/securi…
securityonion's tweet image. #SecurityOnion 2.3.120 now available!

✅Improvements for Cases, Analyst Desktop, and IDH!
✅Lots of bug fixes!
✅#CyberChef 9.37.3
✅#Elastic 7.17.3
✅#FleetDM 4.12.1
✅#Suricata 6.0.5
✅#Zeek 4.0.6
✅#nginx 1.20.2

For more information, please see:
blog.securityonion.net/2022/04/securi…


Thinking about switching to a gmmk pro. Should I get the brass plate is the big question. I already use the glorious panda switches with some drop MT3 keycaps. I need that function row.


Toosmooth reposted

#SecurityOnion 2.3.100 20220301 Hotfix Now Available! blog.securityonion.net/2022/03/securi…


Toosmooth reposted

With the IDH node now a core part of Sec Onion, you can deploy intrusion detection honeypots in your network with just a few keystrokes. If an attacker touches the honeypot, the alert goes straight into your sec onion console for investigation. This is BIG!

At Security Onion Conference 2021, @chrissanders88 and @DefensiveDepth presented on Intrusion Detection Honeypots (IDH)🍯 youtube.com/watch?v=NzUhfA… The IDH node will be fully integrated into #SecurityOnion 2.3.110!🥳

securityonion's tweet card. Security Onion Conference 2021 Layers of Deception: Intrusion...

youtube.com

YouTube

Security Onion Conference 2021 Layers of Deception: Intrusion...



This inspires me to talk about full pcap. I always recommend 5-7 days of full pcap. 3 in a pinch. If you feel you need more than that due to dwell times and the like, you don't need to be investing in space.. You need to be investing in people and process to find it sooner. #NSM


Want to work on cool stuff like this? We are looking for Go developers! 100% remote, must live in the US and be a US citizen. blog.securityonion.net/2021/08/securi… #golang #remote #Jobs


Toosmooth reposted

I've been playing with this some over the past couple of weeks and updated to the new release this morning. The SO team is laying some solid ground work with the new native case management feature. Super significant and immediately useful.

#SecurityOnion 2.3.100 now available including SOC Cases! ✅SOC Cases - native case management! ✅#Elastic 7.16.3 ✅#FleetDM 4.8.0 ✅#Zeek 4.0.5 ✅#CyberChef 9.32.3 blog.securityonion.net/2022/01/securi…

securityonion's tweet image. #SecurityOnion 2.3.100 now available including SOC Cases!

✅SOC Cases - native case management!
✅#Elastic 7.16.3
✅#FleetDM 4.8.0
✅#Zeek 4.0.5
✅#CyberChef 9.32.3

blog.securityonion.net/2022/01/securi…
securityonion's tweet image. #SecurityOnion 2.3.100 now available including SOC Cases!

✅SOC Cases - native case management!
✅#Elastic 7.16.3
✅#FleetDM 4.8.0
✅#Zeek 4.0.5
✅#CyberChef 9.32.3

blog.securityonion.net/2022/01/securi…
securityonion's tweet image. #SecurityOnion 2.3.100 now available including SOC Cases!

✅SOC Cases - native case management!
✅#Elastic 7.16.3
✅#FleetDM 4.8.0
✅#Zeek 4.0.5
✅#CyberChef 9.32.3

blog.securityonion.net/2022/01/securi…
securityonion's tweet image. #SecurityOnion 2.3.100 now available including SOC Cases!

✅SOC Cases - native case management!
✅#Elastic 7.16.3
✅#FleetDM 4.8.0
✅#Zeek 4.0.5
✅#CyberChef 9.32.3

blog.securityonion.net/2022/01/securi…


Case management is finally here! Time to serve up some soup and get your cases on. Would love your feedback! #SecurityOnion #ESM #NSM #FULLpcap

#SecurityOnion 2.3.100 now available including SOC Cases! ✅SOC Cases - native case management! ✅#Elastic 7.16.3 ✅#FleetDM 4.8.0 ✅#Zeek 4.0.5 ✅#CyberChef 9.32.3 blog.securityonion.net/2022/01/securi…

securityonion's tweet image. #SecurityOnion 2.3.100 now available including SOC Cases!

✅SOC Cases - native case management!
✅#Elastic 7.16.3
✅#FleetDM 4.8.0
✅#Zeek 4.0.5
✅#CyberChef 9.32.3

blog.securityonion.net/2022/01/securi…
securityonion's tweet image. #SecurityOnion 2.3.100 now available including SOC Cases!

✅SOC Cases - native case management!
✅#Elastic 7.16.3
✅#FleetDM 4.8.0
✅#Zeek 4.0.5
✅#CyberChef 9.32.3

blog.securityonion.net/2022/01/securi…
securityonion's tweet image. #SecurityOnion 2.3.100 now available including SOC Cases!

✅SOC Cases - native case management!
✅#Elastic 7.16.3
✅#FleetDM 4.8.0
✅#Zeek 4.0.5
✅#CyberChef 9.32.3

blog.securityonion.net/2022/01/securi…
securityonion's tweet image. #SecurityOnion 2.3.100 now available including SOC Cases!

✅SOC Cases - native case management!
✅#Elastic 7.16.3
✅#FleetDM 4.8.0
✅#Zeek 4.0.5
✅#CyberChef 9.32.3

blog.securityonion.net/2022/01/securi…


As someone who has been working from home over a decade I feel for the folks who now have a taste of it and are being forced back into the office. Some places need you in the seat so they can get their local tax incentives. Has nothing to do with productivity. #WFH


Toosmooth reposted

Want to be notified if there are operational issues in your #SecurityOnion grid? Our latest video is for you! #Grafana Alarms in #SecurityOnion youtu.be/8FmZ4MRe8Uk via @YouTube

securityonion's tweet card. Grafana Alarms in Security Onion

youtube.com

YouTube

Grafana Alarms in Security Onion


Does a long beard grant +5 to UNIX/LINUX? #UNIX #LINUX


Loading...

Something went wrong.


Something went wrong.