Day 5 of being sick. Though I spent most of the day writing this small ebook.

Should be published sometime in Jan 2020.

> Defecting Chinese spy offers information trove to Australian government

A Chinese spy has risked his life to defect to Australia and is now offering a trove of unprecedented inside intelligence on how China conducts its interference operations abroad.

Or 16 fediverse accounts. 18 (or 20?) if you include ones that have been nuked (instance deleted) like gnu social.

Unfortunately, I am not on Twitter so my tweet about setting up an account on or to new folks is not there.

Don't forget the smaller instances ;)

Please welcome @fs0c131y :) "French security researcher. Worst nightmare of Oneplus, Wiko, UIDAI, Kimbho, BJP IT Cell and others. Not completely schizophrenic. Not related to USANetwork." (from their :birdsite: bio)

Today's agenda:
- Snare agent
- RSA Netwitness
- Splunk UF and why it's not that Good in comparison

For WMI attack investigation, look into collecting Windows Event Log from the WMI-Activity Operational channel as well as from the Microsoft-Windows-WMI-Activity ETW Provider. SANS DFIR on WMI attacks

Someone trying to add me on LinkedIn;

MSc Information Security | CISSP | CISA | CISM | CRISC | OSWP | SCP | ISO 27001 Lead Implementor


Two infosec conferences I want to go to in Feb/March respectively and no tickets 😭

Zero-day and N-day security vulnerability notes, analysis, and proof-of-concepts

Book I want to read - Venice Secret Service

Housed in the imposing Doge's Palace and under the direction of the Council of Ten, the notorious governmental committee that acted as Venice's spy chiefs, this 'proto-modern' organisation served prominent intelligence functions including operations, analysis, cryptography and steganography, cryptanalysis, and even the development of lethal substances.

