@jkppr.bsky.social
DFIR and Timesketch for work, hiking and sailing as a hobby, thoughts are my own, not much more to say...
We are launching a Black Friday deal on our most popular course, Threat Hunting & Incident Response w/Velociraptor! From now until midnight (EST) 11/28, enjoy 40% off our best-selling on-demand course.
Register: ddi.sh/thvr-bf-2025
Use Code: blackfriday2025
#DFIR #ThreatHunting
๐ฃTHREAD: Itโs surprising to me that so many people were surprised to learn that Signal runs partly on AWS (something we can do because we use encryption to make sure no one but youโnot AWS, not Signal, not anyoneโcan access your comms).
Itโs also concerning. 1/
A threat actor (UNC6395) is accessing Salesforce accounts and data through the Salesloft Drift AI chat agent
cloud.google.com/blog/topics/...
A new Unfurl release (unfurl.link) is here! v2025.08 has:
๐ Parsing more from TikTok IDs (millisecond timestamp, entity type (user account, device, live session, or video), and more). Thanks to Benjamin Steel for the paper arxiv.org/abs/2504.13279
๐ Full release notes: github.com/obsidianfore...
Heading to #BlackHat Arsenal in 2 weeks w/ @maartenvdantzig.bsky.social to demo our new AI investigation features in Timesketch! We've built a workflow that partners the analyst with AI to speed up investigations while keeping you in control.
Meet us on ๐Thurs, Aug 7, 1pm, at Arsenal Station 7
Using Timesketch for timeline analysis? We recently added a new feature: LLM summaries of up to 500 events in view. Example below uses Gemini Flash, but you can just as easily use a local Ollama model. Setup guide: timesketch.org/guides/user/...
19.06.2025 18:01 โ ๐ 6 ๐ 4 ๐ฌ 0 ๐ 1Here are the slides/resources from our #SecurityFest talk on "Modernizing Incident Response Using Techniques that Scale"
Talk: www.youtube.com/live/Znl7TBF...
Hey DFIR Peeps! I am hiring incident responders in two locations - Boulder, CO and Sunnyvale, CA. It'd be hard to find a bigger CSIRT with more scope and more interesting stuff to do than this one. :D
SVL: www.google.com/about...
BLD: www.google.com/about...
We have a new Timesketch release: github.com/google/times...
It includes AI / LLM things, new features, bugfixes and more. Check it out. #DFIR
What if the wise men kept walking after Jesusโs birth?
Watch the latest What If? video collaboration with MinuteEarth!
youtu.be/YL2VNtus4xk
Hey #DFIR people! New #OpenRelik release just dropped. Some cool new features and a bunch of bug fixes.
26.02.2025 16:32 โ ๐ 5 ๐ 2 ๐ฌ 0 ๐ 0Turren-Schรถnbรผel Trail, my absolute favorite so far.
22.02.2025 06:43 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0Snowshoeing at Weissenberge, Switzerland
02.02.2025 17:40 โ ๐ 0 ๐ 0 ๐ฌ 0 ๐ 0A snow-covered landscape with a clear blue sky and snowshoe tracks leading through the snow.
Snowshoeing in a winter wonderland. [Furna, Switzerland]
25.01.2025 19:39 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0Project Zero is hiring ๐
No need to tell y'all that the team is awesome
Exciting News๐๐:
Our @cyber5w.bsky.social Intro to DFIR Course is now FREE!๐
Please read our announcement found below. The course will also be available for FREE @opensectraining.bsky.social very soon! #DFIR #infosec #cybersecurity #DigitalForensics
cyber5w.com/into-dfir.html
๐ New OpenRelik release
Role-based access control, folder sharing, database improvements, optimisations for file listings, chunked file uploads, bug fixes and refactoring efforts to improve stability.
๐ https://openrelik.org/changelog/
๐ https://discord.gg/hg652gktwX
#DFIR
If you need datasets for your #DFIR training? Feel free to use any of my cases found in the URL below. They can be used for both academic or commercial training.
www.ashemery.com/dfir.html
A picture taken from a mountain peak overlooking a sea of clouds.
17.11.2024 04:43 โ ๐ 1 ๐ 0 ๐ฌ 0 ๐ 0