k_sec Profile Banner
Kurt Baumgartner Profile
Kurt Baumgartner

@k_sec

Followers
7K
Following
10K
Statuses
16K

ex-comrade. I have many leather-bound books and my apartment smells of rich mahogany. thanks for all the xor

Boulder, CO
Joined August 2010
Don't wanna be here? Send us removal request.
@k_sec
Kurt Baumgartner
5 days
"Before migrating to YARA-X, timeouts affected roughly 2% of scanned files. With YARA-X, this number has dropped to under 0.2%"
0
4
9
@k_sec
Kurt Baumgartner
12 days
Meta's WhatsApp says Israeli spyware company Paragon targeted users -
0
0
1
@k_sec
Kurt Baumgartner
25 days
RT @StrikeReadyLabs: #dailyphish it's 10pm, do you know how your gateway handles ".searchConnector-ms" extensions? "Mechanism of data sha…
0
7
0
@k_sec
Kurt Baumgartner
25 days
includes HoneyMyte plugX cleanup discussion. criticizes FBI announcement and "whatif" risks, but leaves out any comparison to the recent defective Crowdstrike update disaster (best current "whatif" and contractual comparisons). not a worm. good talk tho
0
0
0
@k_sec
Kurt Baumgartner
25 days
FBI coordinates cleanup for some HoneyMyte plugX-infected systems in the US, c2: 45.142.166[.]112. Related APT activity spanned 2020-2022, afaik first focused on Myanmar and southeast Asian targets. Technically, not worm - required user interaction
0
0
1
@k_sec
Kurt Baumgartner
25 days
0
0
0
@k_sec
Kurt Baumgartner
26 days
<-- lots in there...i.e. fed networks required to lock down BGP, DNS encryption requirements, post-quantum crypto guidance from CISA... etc etc
0
0
0
@k_sec
Kurt Baumgartner
28 days
FLARE's backscatter sounds cool. some AV vendors built such a thing maybe more than a decade ago? very valuable, but the scripts to seek config data can be incredibly complex and difficult to maintain
2
9
43
@k_sec
Kurt Baumgartner
29 days
RT @ddimolfetta: Salt Typhoon sanctions coming, via @nakashimae - “The hackers … work for a Beijing-based firm, according to several offici…
0
5
0
@k_sec
Kurt Baumgartner
29 days
@markpars0ns @bkMSFT nicely done
0
0
0
@k_sec
Kurt Baumgartner
1 month
RT @RustyNoob619: #100DaysofYARA Day 10 A simple YARA rule to detect PE files that have time stamps from the future 🐧
0
6
0
@k_sec
Kurt Baumgartner
1 month
RT @StrikeReadyLabs: interesting spin on browser-in-a-browser #apt thunderbird-production.up.railway[.]app
Tweet media one
Tweet media two
Tweet media three
0
5
0
@k_sec
Kurt Baumgartner
1 month
RT @cybercentre_ca: #CyberAlert | BeyondTrust security advisory A critical vulnerability has been discovered in BeyondTrust Privileged Rem…
0
6
0
@k_sec
Kurt Baumgartner
1 month
0
0
2
@k_sec
Kurt Baumgartner
2 months
@ShaneHuntley richard rorty would be pleased
0
0
0
@k_sec
Kurt Baumgartner
2 months
RT @StrikeReadyLabs: If you're interested, feel free to download from here:
Tweet media one
0
5
0
@k_sec
Kurt Baumgartner
2 months
no powerlifter here. But spent a morning session with Zack McChesney and picked up 335 pounds easy with decent form. Next time we'll put more on the bar!
3
0
14
@k_sec
Kurt Baumgartner
2 months
RT @haveibeenpwned: New breach: More than 90M rows of French citizen data with 28M unique email addresses was found publicly facing in Sep.…
0
117
0