Chris Truncer

Chris Truncer

@christruncer.bsky.social

Deputy Chief Red Team @ CISA && BJJ && Open Source Dev

612 Followers 126 Following 173 Posts Joined Sep 2023
2 weeks ago

Man, I love Makar and MacKinnon, but boy did Makar make USA sweat after making that goal to tie it up, along with all the shots Canada had, including Toews.

0 0 0 0
2 weeks ago

Insane game

0 0 0 0
2 weeks ago

Woke up early to get to watch Team USA win hockey gold. Such an amazing thing to see, I am so pumped. First time since 1980!

2 0 1 0
2 weeks ago

Definitely agree

1 0 1 0
2 weeks ago

I think I can mostly agree with that. Makes sense

0 0 0 0
2 weeks ago
Preview
a man wearing sunglasses and a bandana says " yeah brother " in front of a crowd ALT: a man wearing sunglasses and a bandana says " yeah brother " in front of a crowd
1 0 0 0
2 weeks ago

To go off my previous post. I think testing AI is more than valid security testing. But in my mind red teaming is about testing defenders, detections, and improving response.

When targeting AI, that isn’t it. It’s not red teaming.

But I’m open to different opinions.

2 0 3 0
2 weeks ago

So, question if the day from me. Can you “red team” AI?

I’ve seen groups and people state that they red team AI. Is it more prompt injection? Are you actively helping defenders build and scale their defenses or test their responses? Is this more a pen test vs real red team?

0 0 0 0
1 month ago

There are other ways to setup your system for telemetry if you are looking to see what can avoid detection.

But if you want to test your latest hotness against prevention of code execution, definitely test it against WDAC.

Find something that gets around it? Now that’s useful.

0 0 0 0
1 month ago

WDAC will block everything you don’t trust, even to the point you could theoretically end up boot looping your Windows box if you’re trying to load untrusted drivers, or drivers you didn’t actually allow that you need.

Ask me how I know….

1 0 0 0
1 month ago
YouTube
SAINTCON 2018 - Chris Truncer - Introducing Effective Controls in your Environment with Windows Defe Title: Introducing Effective Controls in your Environment with Windows Defender Application Control Speaker: Chris Truncer Conference: SAINTCON 2018 Location: Track 1 Date: 2018-09-26 Time: 10:00am…

Since a lot of talk I’m seeing lately is about good defenses, especially for initial access, I’ve been preaching the good news about WDAC (formerly my fav name of Device Guard) for a while.

I think a properly set up WDAC is the bar which to test access - youtu.be/sWjhuVsSEks?...

1 1 0 0
1 month ago

Loving the start of my day with an email from @ISC2 saying they are auditing submission that I uploaded (with a screenshot), for a total of 1 credit hour.

¯\_(ツ)_/¯

Enjoy

0 0 0 0
2 months ago

Oh great, looks like a ton of data from a Wired breach just was published.

1 0 0 0
2 months ago

I’ve had zero clue there was even a heisman race this year

0 0 0 0
3 months ago
Post image

I’ve not been at gyms before where they give stripes, so this is a first, typically just belts. But I’m now a one stripe brown belt in jiu jitsu. I plenty of rolls after.

And a good day

1 0 0 0
3 months ago

I assume a lot of people have been playing with it, but I love testing and using @tailscale. It’s been nice being able to set up a private network, and love the wireguard usage overall.

Anyone using it for anything niche or cool?

3 0 0 0
3 months ago

Man, 3 rounds in and Schevchenko is dominating this fight so far.

0 0 0 0
3 months ago

Same with a cruise

0 0 0 0
3 months ago

Pretty much this

0 0 0 0
3 months ago

Yup!

1 0 0 0
3 months ago

Lucky you, it was me!

1 0 0 0
3 months ago

My kid just asked me if dishwashers were around when I was a kid.

What the f

3 0 2 0
4 months ago

Why is isc2.org asking to know my location just when going to their main website? That’s absolutely unnecessary.

2 0 0 0
4 months ago

Who in their right mind likes puffy Cheetos?

By far crunchy is way superior.

1 0 0 0
4 months ago
Post image

Getting to check out @BsidesCOS today, looking forward to it!

0 0 0 0
4 months ago

Ha, you all are awesome!

0 0 0 0
5 months ago

Well FCA (Jeep, etc.) just sent notice they were breached and lost some data, names, addresses, etc.

Glad they had my data

0 0 1 0
5 months ago

Just so everyone is aware, there’s 58 million pounds of corn dogs being recalled as we speak due to possible wood in the batter.

You know, minus the giant wood stick it is embedded on.

The more you know.

0 0 1 0
5 months ago

Love seeing Clemson lose. I cannot stand Dabo Swinney.

What guy did the curse this year saying he would eat dog poop then didn’t?

0 0 0 0
5 months ago

That would be interesting to see, little snitch hasn't seemed to pop that up yet

0 0 0 0