Jeff Beley
@beley.org
Incident response and incident response accessories @Accenture. Opinions are my own. DNS aficionado. grep/sed/awk connoisseur.
I do a pretty good job of leaving corporate-speak at work.
In a signal exchange with my wife, I used the word "bump". I had to explain what it meant.
In a signal exchange with my wife, I used the word "bump". I had to explain what it meant.
May 3, 2025 at 1:56 AM
I do a pretty good job of leaving corporate-speak at work.
In a signal exchange with my wife, I used the word "bump". I had to explain what it meant.
In a signal exchange with my wife, I used the word "bump". I had to explain what it meant.
Reposted by Jeff Beley
January 27, 2025 at 8:46 PM
Reposted by Jeff Beley
I once again appeal to the void that any operation/working group/team activity that involves folks in more than one timezone just switch to UTC.
ISO 8601 + UTC || GTFO
ISO 8601 + UTC || GTFO
a man in a suit and tie is asking where you are
Alt: a man in a suit and tie is pretending to speak on a phone while asking "what time is it where you are?"
media.tenor.com
December 8, 2024 at 2:36 PM
I once again appeal to the void that any operation/working group/team activity that involves folks in more than one timezone just switch to UTC.
ISO 8601 + UTC || GTFO
ISO 8601 + UTC || GTFO
Reposted by Jeff Beley
There are two stages of a security career: Before you know the truth of what you read in the news on an incident, and after, when you know exactly what happened and can't say a single fucking thing.
December 2, 2024 at 7:46 PM
There are two stages of a security career: Before you know the truth of what you read in the news on an incident, and after, when you know exactly what happened and can't say a single fucking thing.
Reposted by Jeff Beley
🌟New report out today!🌟
The Curious Case of an Egg-Cellent Resume
Analysis & reporting completed by @_pete_0, @svch0st and guest contributor @k3dg3 from @proofpoint!
Audio: Available on Spotify, Apple, YouTube and more!
thedfirreport.com/2024/12/02/t...
The Curious Case of an Egg-Cellent Resume
Analysis & reporting completed by @_pete_0, @svch0st and guest contributor @k3dg3 from @proofpoint!
Audio: Available on Spotify, Apple, YouTube and more!
thedfirreport.com/2024/12/02/t...
The Curious Case of an Egg-Cellent Resume
Key Takeaways Initial access was via a resume lure as part of a TA4557/FIN6 campaign. The threat actor abused LOLbins like ie4uinit.exe and msxsl.exe to run the more_eggs malware. Cobalt Strike and…
thedfirreport.com
December 2, 2024 at 12:33 PM
🌟New report out today!🌟
The Curious Case of an Egg-Cellent Resume
Analysis & reporting completed by @_pete_0, @svch0st and guest contributor @k3dg3 from @proofpoint!
Audio: Available on Spotify, Apple, YouTube and more!
thedfirreport.com/2024/12/02/t...
The Curious Case of an Egg-Cellent Resume
Analysis & reporting completed by @_pete_0, @svch0st and guest contributor @k3dg3 from @proofpoint!
Audio: Available on Spotify, Apple, YouTube and more!
thedfirreport.com/2024/12/02/t...
Reposted by Jeff Beley
Russian citizen and notorious ransomware affiliate Mikhail Pavlovich Matveev (also known as Wazawaka, Uhodiransomwar, m1x, and Boriselcin) has been arrested and indicted in Russia for his involvement in several hacking groups.
www.bleepingcomputer.com/news/securit...
www.bleepingcomputer.com/news/securit...
Russia arrests cybercriminal Wazawaka for ties with ransomware gangs
Russian law enforcement has arrested and indicted notorious ransomware affiliate Mikhail Pavlovich Matveev (also known as Wazawaka, Uhodiransomwar, m1x, and Boriselcin) for developing malware and his ...
www.bleepingcomputer.com
November 29, 2024 at 5:56 PM
Russian citizen and notorious ransomware affiliate Mikhail Pavlovich Matveev (also known as Wazawaka, Uhodiransomwar, m1x, and Boriselcin) has been arrested and indicted in Russia for his involvement in several hacking groups.
www.bleepingcomputer.com/news/securit...
www.bleepingcomputer.com/news/securit...
Reposted by Jeff Beley
Russian hacker Mikhail Matveev, tied to #LockBit & Hive ransomware, arrested in Russia. The US had offered a $10M reward for his role in global ransomware attacks.
thehackernews.com/2024/11/want...
#cybersecurity #malware
thehackernews.com/2024/11/want...
#cybersecurity #malware
Wanted Russian Cybercriminal Linked to Hive and LockBit Ransomware Has Been Arrested
Russian authorities arrest Mikhail Matveev, key LockBit and Hive ransomware hacker, charged with global cyberattacks.
thehackernews.com
November 30, 2024 at 9:00 AM
Russian hacker Mikhail Matveev, tied to #LockBit & Hive ransomware, arrested in Russia. The US had offered a $10M reward for his role in global ransomware attacks.
thehackernews.com/2024/11/want...
#cybersecurity #malware
thehackernews.com/2024/11/want...
#cybersecurity #malware
Reposted by Jeff Beley
Cyber Blackfriday tips is already ongoing on GitHub (via Thomas Roccia, fr0gger_)
github.com/0x90n/InfoSe...
github.com/0x90n/InfoSe...
GitHub - 0x90n/InfoSec-Black-Friday: All the deals for InfoSec related software/tools this Black Friday
All the deals for InfoSec related software/tools this Black Friday - 0x90n/InfoSec-Black-Friday
github.com
November 20, 2024 at 8:32 AM
Cyber Blackfriday tips is already ongoing on GitHub (via Thomas Roccia, fr0gger_)
github.com/0x90n/InfoSe...
github.com/0x90n/InfoSe...
Reposted by Jeff Beley
Exploring the full bluesky firehose, in three dimensions: firehose3d.theo.io
November 16, 2024 at 9:56 PM
Exploring the full bluesky firehose, in three dimensions: firehose3d.theo.io
Reposted by Jeff Beley
Was a huge Tweetdeck user (till Musk paywalled it and I had to use a shonky cheat version instead) - hugely grateful for @deck.blue - somebody hire @gildaswise.com sharpish.
If you miss TweetDeck and other multicolumn apps and want a similarly good experience on BlueSky, @deck.blue is a really nice option (and the solo developer @gildaswise.com who built it is looking for work if anyone is hiring).
November 16, 2024 at 12:02 AM
Was a huge Tweetdeck user (till Musk paywalled it and I had to use a shonky cheat version instead) - hugely grateful for @deck.blue - somebody hire @gildaswise.com sharpish.