jclausing's profile picture. SANS instructor, DFIR, malware analysis, network forensics, GSE #26, cyclist, private pilot, he/him

Jim - #BlackLivesMatter 🌈

@jclausing

SANS instructor, DFIR, malware analysis, network forensics, GSE #26, cyclist, private pilot, he/him

Jim - #BlackLivesMatter 🌈 reposted

🚨 NEWLY UPDATED 🚨 🧠 Struggling w/ #MemoryAnalysis? Our #MemoryForensics Cheat Sheet is here to help! It introduces an analysis framework & covers everything from memory acquisition to live memory analysis & tool usage. 👉 Get your copy: sans.org/u/1Dfb #DFIR

sansforensics's tweet image. 🚨 NEWLY UPDATED 🚨

🧠 Struggling w/ #MemoryAnalysis? Our #MemoryForensics Cheat Sheet is here to help! 

It introduces an analysis framework & covers everything from memory acquisition to live memory analysis & tool usage. 

👉 Get your copy: sans.org/u/1Dfb

#DFIR

2 more days to get the early-bird discount for one of my all-time favorite conferences, #SANS #DFIRCON in Miami in Nov. There are a bunch of hands-on workshops on Sun, 16 Nov, lots of evening events during the week #FOR577 my last in 2025. @sansforensics sans.org/cyber-security…

jclausing's tweet image. 2 more days to get the early-bird discount for one of my all-time favorite conferences, #SANS #DFIRCON in Miami in Nov. There are a bunch of hands-on workshops on Sun, 16 Nov, lots of evening events during the week #FOR577 my last in 2025. @sansforensics  sans.org/cyber-security…

Jim - #BlackLivesMatter 🌈 reposted

We should really all be retweeting this daily.

stealthygeek's tweet image. We should really all be retweeting this daily.

Jim - #BlackLivesMatter 🌈 reposted

hashcat v7.1.0 released! This update includes important bug fixes, new features, and support for new hash-modes, including KeePass with Argon2. Read the full write-up here: hashcat.net/forum/thread-1…

hashcat's tweet image. hashcat v7.1.0 released!

This update includes important bug fixes, new features, and support for new hash-modes, including KeePass with Argon2.

Read the full write-up here: hashcat.net/forum/thread-1…

Jim - #BlackLivesMatter 🌈 reposted

hashcat v7.0.0 released! After nearly 3 years of development and over 900,000 lines of code changed, this is easily the largest release we have ever had. Detailed writeup is available here: hashcat.net/forum/thread-1…

hashcat's tweet image. hashcat v7.0.0 released! 

After nearly 3 years of development and over 900,000 lines of code changed, this is easily the largest release we have ever had. 

Detailed writeup is available here: hashcat.net/forum/thread-1…

Jim - #BlackLivesMatter 🌈 reposted

YOU MANIACS! YOU BLEW IT UP! theatlantic.com/magazine/archi…


Jim - #BlackLivesMatter 🌈 reposted

Join us at #DFIRSummit in July when Jessica Gorman shares how modular design can streamline IR playbooks — saving time, cutting errors, & scaling updates across dozens (or hundreds) of workflows. ➡️ View Agenda & Register: sans.org/u/1zv0 #IncidentResponse #SOAR

sansforensics's tweet image. Join us at #DFIRSummit in July when Jessica Gorman shares how modular design can streamline IR playbooks — saving time, cutting errors, & scaling updates across dozens (or hundreds) of workflows.

➡️ View Agenda & Register: sans.org/u/1zv0

#IncidentResponse #SOAR

Jim - #BlackLivesMatter 🌈 reposted

🏔️ Join the top minds in digital forensics & incident response at the SANS #DFIRSummit in Salt Like City on July 24-25 for: 🎤 2 days of expert talks 💻 DFIR Bytes 🛠️ Hands-on workshops 👥 Unmatched networking 🎓 Earn 12 CPEs (6/day) ➡️ Explore Agenda: sans.org/u/1zv0

sansforensics's tweet image. 🏔️ Join the top minds in digital forensics & incident response at the SANS #DFIRSummit in Salt Like City on July 24-25 for:

🎤 2 days of expert talks
💻 DFIR Bytes
🛠️ Hands-on workshops
👥 Unmatched networking
🎓 Earn 12 CPEs (6/day)

➡️ Explore Agenda: sans.org/u/1zv0

Jim - #BlackLivesMatter 🌈 reposted

DFIR Bytes isn’t a CTF or a workshop—it’s a fully immersive case-solving experience. You’ll tackle real-world incidents, apply forensic techniques, & build skills you can use immediately. Only at #DFIRSummit in Salt Lake City this July w/ @4enzikat0r! 🔗 sans.org/u/1zv0

sansforensics's tweet image. DFIR Bytes isn’t a CTF or a workshop—it’s a fully immersive case-solving experience. You’ll tackle real-world incidents, apply forensic techniques, & build skills you can use immediately.

Only at #DFIRSummit in Salt Lake City this July w/ @4enzikat0r!

🔗 sans.org/u/1zv0

Jim - #BlackLivesMatter 🌈 reposted

📄 In case you haven't grabbed your copy... The #CTI Cheat Sheet v1.0 created by @likethecoins & @PDXBek simplifies threat modeling, tackles cognitive biases, & sharpens your analysis. 📥 Grab your FREE copy: buff.ly/7sAn10C #ThreatIntel #DFIR

sansforensics's tweet image. 📄 In case you haven't grabbed your copy...

The #CTI Cheat Sheet v1.0 created by @likethecoins & @PDXBek simplifies threat modeling, tackles cognitive biases, & sharpens your analysis. 

📥 Grab your FREE copy: buff.ly/7sAn10C

#ThreatIntel #DFIR

Linux touches every part of our networks. Our routers, switches, and firewalls likely run some flavor of Linux or Unix. Join me in London in July for the newly updated #SANS #FOR577 where we'll learn how to investigate attacks on Linux systems. sans.org/cyber-security…

jclausing's tweet image. Linux touches every part of our networks. Our routers, switches, and firewalls likely run some flavor of Linux or Unix.  Join me in London in July for the newly updated #SANS #FOR577 where we'll learn how to investigate attacks on Linux systems.
sans.org/cyber-security…

Jim - #BlackLivesMatter 🌈 reposted

Have you checked out the new hunting tool yet? We may have mentioned it once or twice already! 😂 And, here it is again!  🔎 Just enter an IPv4, domain, URL, or file hash, and instantly see if it’s been identified on URLhaus, MalwareBazaar, ThreatFox, or YARAify - with just one…

abuse_ch's tweet image. Have you checked out the new hunting tool yet? We may have mentioned it once or twice already! 😂 And, here it is again! 

🔎 Just enter an IPv4, domain, URL, or file hash, and instantly see if it’s been identified on URLhaus, MalwareBazaar, ThreatFox, or YARAify - with just one…

Jim - #BlackLivesMatter 🌈 reposted

📄 The Linux #IncidentResponse & #ThreatHunting Poster by @4enzikat0r & @tazwake is your forensic roadmap, helping you analyze timestamps, track persistence mechanisms, & uncover hidden malware. 📥 Download your FREE copy!: sans.org/u/1Avg #DFIR #Linux

sansforensics's tweet image. 📄 The Linux #IncidentResponse & #ThreatHunting Poster by @4enzikat0r & @tazwake is your forensic roadmap, helping you analyze timestamps, track persistence mechanisms, & uncover hidden malware.

📥 Download your FREE copy!: sans.org/u/1Avg

#DFIR #Linux

Jim - #BlackLivesMatter 🌈 reposted
sans_isc's tweet image. Tool update: mac-robber.py isc.sans.edu/diary/31738

Jim - #BlackLivesMatter 🌈 reposted

Blog post: x64dbg.com/blog/2025/03/0… Check out Darius Houle's website: x64.ooo x64dbg Automate: dariushoule.github.io/x64dbg-automat…


Jim - #BlackLivesMatter 🌈 reposted

🚨 THIS JUST IN: The ultimate #Linux guide is here! Created by @4enzikat0r & @tazwake this must-have forensic poster is your go-to resource for detecting rootkits, tracking attacker persistence, & analyzing timestamps. 📄 Get your FREE copy! buff.ly/pl8eiHo #DFIR

sansforensics's tweet image. 🚨 THIS JUST IN: The ultimate #Linux guide is here!

Created by @4enzikat0r & @tazwake this must-have forensic poster is your go-to resource for detecting rootkits, tracking attacker persistence, & analyzing timestamps. 

📄 Get your FREE copy! buff.ly/pl8eiHo

#DFIR

Jim - #BlackLivesMatter 🌈 reposted

Yet again, I remind you that if you work in cybersecurity, you will never not benefit from learning packet analysis. Yes, there are tools for that. But when they fail (and oh buddy do they fail), your ability to perform independent analysis is critical.


Jim - #BlackLivesMatter 🌈 reposted

Tool update: sigs.py - added check mode isc.sans.edu/diary/31706

sans_isc's tweet image. Tool update: sigs.py - added check mode isc.sans.edu/diary/31706

Jim - #BlackLivesMatter 🌈 reposted

🤠Join me in Dallas (Virtual or In Person) for the first run of the newly updated FOR518! 🐴 💻New dataset with macOS 15 and iOS 18!📱 📄New workbook with 20+ NEW labs! 🧩New CTF Day 6 Challenges!🧩 📱Updated @CorrelliumHQ devices! 🍖…and hopefully good BBQ and Tacos!🌮 Find…

iamevltwin's tweet image. 🤠Join me in Dallas (Virtual or In Person) for the first run of the newly updated FOR518! 🐴

💻New dataset with macOS 15 and iOS 18!📱
📄New workbook with 20+ NEW labs!
🧩New CTF Day 6 Challenges!🧩
📱Updated @CorrelliumHQ devices!

🍖…and hopefully good BBQ and Tacos!🌮

Find…

Loading...

Something went wrong.


Something went wrong.