
tomchop
@tomchop_
DFIR @Google by day; threat intel and malware analysis by night · BlueTeam (views are my own) · he/him · @[email protected] / @tomchop.bsky.social
ID: 46112076
http://tomchop.me 10-06-2009 13:34:21
6,6K Tweet
5,5K Followers
1,1K Following

🚨 Frederic Baguelin sharing "Yeti" ! An open-source threat intelligence platform storing data in a graph database. 🔴 Happening now: aka.ms/JupyterthonLiv…



software engineers will notice half a second of latency in something that should be ~instant and will move heaven and earth to fix it, or at least to understand why; and this seems to have blown an operation that had started to install a backdoor on every Debian/Ubuntu SSH server



📢 #Yeti is now part of the ODFIR infrastructure automation project! It's never been easier to connect it to a Timesketch instance and enrich all your sketches with juicy forensics intelligence ✨ More details here 👇🏻 osdfir.blogspot.com/2024/04/welcom… #DFIR #CTI #Timesketch

Let's dive into our cfp.pass-the-salt.org/pts2024/schedu… Starting with the #DFIR & TI session: 🚀Xavier Mertens @[email protected] 🇧🇪 will speak about automation in hunting ⚒ #Yeti evolution by Tom Kuhns & Sebastien Larinier 🤔Alexandre Dulaunoy @[email protected] will bring back RSS for Security + 2 #workshops to 🙌 Book your 🆓🪑 pretix.eu/passthesalt/20…


Very glad to be talking about forensics intelligence and our progress with Yeti, Timesketch, and DFIQ at Pass the SALT Conference !! Looking forward to catch up with everyone at this awesome event! 🤩

Excited to be chatting a bout attacker simulation exercies at Area41 Security Con this afternoon! 🕵️ It's the last talk of the last day, in the underground track. So grab a beer (or any drink), come get cozy and chat about how much blue teams and red teams get to have fun together.




Listening to tomchop and Sebastien Larinier at Pass the SALT Conference talking about: #Yeti - towards a #Forensics Intelligence Platform cfp.pass-the-salt.org/pts2024/talk/L… #pts24




Two new OpenRelik workers released today: 1. Hayabusa from Yamato Security Tools - Analyze your Windows Event Logs. 2. Timesketch exporter - export your timelines seamlessly. #DFIR #OpenRelik 🧵👇See this thread for screencasts:
