Purple Teaming, SCYTHE – Paul’s Security Weekly #609

    We welcome back Bryson Bort, who is the Founder/CEO of GRIMM. Bryson will be talking about Purple Teaming, Top Attack Simulation Scenarios, and Testing Command & Control Channels. To learn more about SCYTHE, visit: https://securityweekly.com/scytheFull Show Notes Follow us on Twitter: https://www.twitter.com/securityweekly Hosts             Announcements Register for our […]
The post Purple Teaming, SCYTHE – Paul’s Security Weekly #609 appeared first on Security Weekly.

Link: http://feedproxy.google.com/~r/securityweekly/Lviv/~3/HP4d-YPEh9I/

Sysmon DNS Logging, Gravwell – Paul’s Security Weekly #608

We welcome back Corey Thuen, Founder and CEO of Gravwell, to talk about security analytics using the new Sysmon DNS logging that dropped this week! To get involved with Gravwell, visit: https://securityweekly.com/gravwell Full Show NotesFollow us on Twitter: https://www.twitter.com/securityweekly Hosts Announcements Register for our upcoming webcasts with SaltStack, DomainTools, and LogRhythm by going to securityweekly.com/webcasts. […]
The post Sysmon DNS Logging, Gravwell – Paul’s Security Weekly #608 appeared first on Security Weekly.

Link: http://feedproxy.google.com/~r/securityweekly/Lviv/~3/H7ZlHoq8ktI/

BlueKeep Vulnerability, Robert Graham – Paul’s Security Weekly #606

    Paul Asadoorian and Robert Graham from Errata Security show you how to search for the BlueKeep vulnerability, or CVE-2019-0708, that has been affecting hundreds of thousands of systems! You can download rdpscan from Rob’s Git repo which also includes some great documentation. Some notes on this vulnerability: Microsoft Windows operating systems older than Windows 7 […]
The post BlueKeep Vulnerability, Robert Graham – Paul’s Security Weekly #606 appeared first on Security Weekly.

Link: http://feedproxy.google.com/~r/securityweekly/Lviv/~3/YK7Bs84OAjg/

Matthew McMahon, Salve Regina University – Paul’s Security Weekly #605

    We welcome Matthew McMahon, Head of Security Analytics at Salve Regina University, to talk about Medical devices, Cybersecurity and Resilience, and Cybersecurity Training! Full Show Notes Follow us on Twitter: https://www.twitter.com/securityweekly Hosts
The post Matthew McMahon, Salve Regina University – Paul’s Security Weekly #605 appeared first on Security Weekly.

Link: http://feedproxy.google.com/~r/securityweekly/Lviv/~3/sipXzI-Zoxw/

SOC Intel: Wire, Logs, & Endpoint – Enterprise Security Weekly #133

    Matt Cauthorn is the VP of Cyber Security Engineering at ExtraHop. Matt Cauthorn leads a team of technical security engineers who work directly with customers and prospects. Matt uses his expertise with ExtraHop to explain The Three Horsemen of SOC Intel: Wire, Logs, Endpoint! To get involved with ExtraHop, vist: https://securityweekly.com/extrahopFull Show Notes […]
The post SOC Intel: Wire, Logs, & Endpoint – Enterprise Security Weekly #133 appeared first on Security Weekly.

Link: http://feedproxy.google.com/~r/securityweekly/Lviv/~3/JtTsvDDx-ZY/

SILENTRINITY Updates, BHIS – Paul’s Security Weekly #595

    Marcello Salvati, Security Analyst at our sponsor Black Hills Information Security, to give some updates on his Post Exploitation Tool SILENTRINITY! Sign up for the BHIS Mailing List to receive updates about upcoming webcasts, blogs, and open-source tools from our testers at: https://securityweekly.com/bhis Full Show Notes Follow us on Twitter: https://www.twitter.com/securityweekly Hosts   […]
The post SILENTRINITY Updates, BHIS – Paul’s Security Weekly #595 appeared first on Security Weekly.

Link: http://feedproxy.google.com/~r/securityweekly/Lviv/~3/t1cbhJVX2ac/

Enterprise-ish Network Security: Pt. 1 – Paul’s Security Weekly #594

    There are quite a few choices for selecting open-source and inexpensive hardware to build your network and provide tools to monitor for security events. In this segment we’ll discuss some of the options, the pros and cons of each, limitations and really cool features! Includes coverage of Qotom hardware, how to procure enterprise-grade […]
The post Enterprise-ish Network Security: Pt. 1 – Paul’s Security Weekly #594 appeared first on Security Weekly.

Link: http://feedproxy.google.com/~r/securityweekly/Lviv/~3/gU7Ysf1ut1Y/

DetectionLab, Chris Long – Paul’s Security Weekly #593

    DetectionLab is a collection of Vagrant and Packer scripts that allows you to automate the creation of a small active directory network that is pre-loaded with endpoint security tooling and logging best practices with a single command. It’s cross-platform and the only requirements to bring up the lab are are Virtualbox / VMware […]
The post DetectionLab, Chris Long – Paul’s Security Weekly #593 appeared first on Security Weekly.

Link: http://feedproxy.google.com/~r/securityweekly/Lviv/~3/mJc4L-kj7U4/

The Future Of Security – Paul’s Security Weekly #592

    In our second segment, the Security Weekly hosts will discuss the Future of Security, such as major changes, evolving threats, and security culture! The Future Of Security What are some of the major changes you hope to see in security over the next 5 years? What are some of the major challenges we’ll […]
The post The Future Of Security – Paul’s Security Weekly #592 appeared first on Security Weekly.

Link: http://feedproxy.google.com/~r/securityweekly/Lviv/~3/LiO9TiQeSvo/

PowerShell for Fun and Profit – Paul’s Security Weekly #590

    Joff will demonstrate some syntax with PowerShell useful for transferring data into a network while pen testing. The technical segment assumes that the pen testing is able to directly use PowerShell from the console itself, although the techniques can be adapted for different purposes. Derbycon Upcoming technical segments Paul’s Stories Two charged with […]
The post PowerShell for Fun and Profit – Paul’s Security Weekly #590 appeared first on Security Weekly.

Link: http://feedproxy.google.com/~r/securityweekly/Lviv/~3/idmoSxoktMk/