David Cottingham (@c0tts) 's Twitter Profile
David Cottingham

@c0tts

CEO & Co-Founder of Airlock Digital, practical and effective allowlisting

ID: 891120056154718208

calendar_today29-07-2017 02:15:52

179 Tweet

309 Followers

114 Following

jungman (@notajungman) 's Twitter Profile Photo

so, help by strong email filtering (main gateway). and then add in DNS and web filtering. and if you are serious... app control (free, like applocker, or fast and featureful like airlock digital) AC-HUNTER to pickup the beaconing when all else fails

Daniel Schell (@danonit) 's Twitter Profile Photo

Recent recorded AusCERT presentation by David Cottingham on *Practical Allowlisting* (aka appcontrol/whitelisting). Includes objectives, maturity, challenges, trust decisions and key requirements including Q&A. Vendor independent - I promise: youtube.com/watch?v=lsl0vf…

Daniel Schell (@danonit) 's Twitter Profile Photo

Discussed attackers' temptation to use custom code, lateral movement and living off the land in an allowlisting context with Patrick and David Cottingham on this weeks Patrick Gray podcast. overcast.fm/+It0j4EJEU

Daniel Schell (@danonit) 's Twitter Profile Photo

Feels too soon to be getting back on the plane after BH/DC, but looking forward to CrowdStrike fal.con23 next week. Swing past our booth and say Hi :)

Koen Van Impe ☕ (@cudeso) 's Twitter Profile Photo

The “Allowlist Auditor” from Airlock Digital is great to highlight the current state of allowlisting on endpoints. Includes tests for execution (exe, dll, PS1, CPL and others) in common locations, and an audit for existing allowlisting solutions. airlockdigital.com/application-wh…

The “Allowlist Auditor” from <a href="/AirlockDigital/">Airlock Digital</a> is great to highlight the current state of allowlisting on endpoints. Includes tests for execution (exe, dll, PS1, CPL and others) in common locations, and an audit for existing allowlisting solutions. airlockdigital.com/application-wh…
Brian in Pittsburgh (@arekfurt) 's Twitter Profile Photo

Here's the reality: We need to shift focus away from relying on detection + response to catch and stop ransomware/extortion actors and toward preventative/blocking means. There simply is no viable alternative if we're going to make substantial progress at societal level here.

Brian in Pittsburgh (@arekfurt) 's Twitter Profile Photo

Application allowlisting is the future for all security consciousness organizations that have any significant resources. It's just a matter of how and when any particular org will adopt it.