Recently I joined a COVID19 threat sharing group. It is pretty amazing watching the data analysis and community driven response to the pandemic. One of the biggest contributions the community has made is publishing an easy to access blacklist: https://blocklist.cyberthreatcoalition.org/vetted/At time of this writing the domain and URL categories are very fleshed out, and each … Continue reading COVID19 Threat Sharing Group
SANS GCIH – Log 5
I PASSED! I literally threw my hands up in the air as the score appeared on the screen. Those practice exams are spot on. From the difficulty to the actual time it took, everything lined up similarly. Probably the best advantage/help I had was the proctor actually offered up a table for all the books … Continue reading SANS GCIH – Log 5
SANS GCIH – Log 4
I took my second practice test a few days ago, and it has taken me quite a bit to get over it. I got a 34%. Not a 90% like I was expecting, but a 34%. I took the practice exam after struggling to hang a light fixture in our house for almost two days … Continue reading SANS GCIH – Log 4
On Boarding Challenges
As a company we do not struggle with on boarding new talent. We are actually really good at bringing folks in, making them feel welcome, and emphasizing how they are now a part of the team. Their first day they sit through a series of presentations, meetings, lunches, and tours to get to know who … Continue reading On Boarding Challenges
Vulnerability Management Fatigue
CVEDetails says that there is currently over 14,000 vulnerabilities that have a CVE score of 9.0 or higher. The average CVE score is a 6.6, and the total number of CVE's is over 103,000. You are responsible for every single one of them. If you're a small shop, that is in addition to your monitoring … Continue reading Vulnerability Management Fatigue
Incident Readiness
An incident response plan is the cornerstone to preparing for what is coming: an incident (a bit obvious, really). Incidents are those little things that tear businesses up. At it's core, the Equifax breach was an incident. The Yahoo email scandal was... an incident. The Shadow Broker's 'hack': an incident. Your data center just went … Continue reading Incident Readiness