malcomvetter Profile Banner
Tim MalcomVetter Profile
Tim MalcomVetter

@malcomvetter

Followers
12K
Following
26K
Statuses
13K

Co-Founder/CEO at ⚡️ @Wirespeed_ Prev: @NetSPI @CYDERES @FishtechGroup @Walmart Red Team @Sp4rkCon @Optiv @fishnetsecurity. PhD Dropout. BJJ 🟪⬛️⬛️🟪🟪 ⳩

🌎
Joined May 2015
Don't wanna be here? Send us removal request.
@malcomvetter
Tim MalcomVetter
6 years
[INTERACTIVE BLOG] Did you like Choose Your Own Adventure books as a kid? Are you fascinated by Red Team adversary tradecraft? Would you like stories inspired from the best defenders? Then come Choose Your Own Red Team Adventure!
Tweet media one
12
161
491
@malcomvetter
Tim MalcomVetter
18 hours
Check out our blog series about what we have seen with an uptick in #identity attacks and how companies have managed to not notice bad guys stealing + logging in with their credentials. 👇
@wirespeed_
⚡️wirespeed
19 hours
We have bad news for you: Identity compromises happen a lot. WAY more often than organizations know, because most events don't result in material impact. 😢 Read the first post in our series about this problem and what you can do about it. 💡
0
0
2
@malcomvetter
Tim MalcomVetter
1 day
@cyb3rops Very thorough. Thanks for sharing.
0
0
1
@malcomvetter
Tim MalcomVetter
4 days
0
0
2
@malcomvetter
Tim MalcomVetter
4 days
@ItsReallyNick @ImposeCost Ok, I’ll go back in my startup cave now. 😇😎
1
0
3
@malcomvetter
Tim MalcomVetter
4 days
@ItsReallyNick @ImposeCost And SOC analysts at MSSPs are an even different breed. It’s often an even more difficult challenge. So, we wrote about that, too:
0
1
5
@malcomvetter
Tim MalcomVetter
6 days
So much poetry. So much AI. 🙃
@wirespeed_
⚡️wirespeed
6 days
"The only thing we let LLMs do."💡 Stay warm and secure out there. ⚡
Tweet media one
0
1
2
@malcomvetter
Tim MalcomVetter
12 days
Check out this amazing detection approach! … Followed by: - something cherry picked - unrealistic data - theoretical - not scalable - requiring some third party tool - requiring a paid license for a data format or integration - done in Excel - noisy - too gray … ^ 90% of social posts about new detection approaches
0
0
2
@malcomvetter
Tim MalcomVetter
13 days
^ copy/paste from LinkedIn, but I suspect this audience (YOU) are more aware of this problem. Are you seeing this trend, too?
0
0
0
@malcomvetter
Tim MalcomVetter
15 days
@jamieantisocial @matthewdunwoody @ItsReallyNick In fact, that’s one reason why we built @wirespeed_ to actually NOT use SSO. We still sync the directory and know when people come/go, but we have a very intentional wall between us and the customer’s environment.
1
0
4
@malcomvetter
Tim MalcomVetter
15 days
“What’s the right tool for the job?” “It depends.”
0
1
3
@malcomvetter
Tim MalcomVetter
15 days
RT @wirespeed_: Do you want to talk about it?
Tweet media one
0
1
0
@malcomvetter
Tim MalcomVetter
19 days
RT @wirespeed_: The book we are metaphorically writing.
Tweet media one
0
2
0
@malcomvetter
Tim MalcomVetter
21 days
@anton_chuvakin We need to catch up. 😇😎
0
0
2
@malcomvetter
Tim MalcomVetter
23 days
☎️☠️
@wirespeed_
⚡️wirespeed
25 days
Does your #MDR provider feel like this?
Tweet media one
0
0
1
@malcomvetter
Tim MalcomVetter
25 days
@ITguySoCal Do you happen to know if these RiskState values are more robust in their logic? `userPassedMFADrivenByRiskBasedPolicy` `aiConfirmedSigninSafe`
1
0
1
@malcomvetter
Tim MalcomVetter
28 days
This is a #redteam technique that I somehow completely missed, but would have loved to use with phishes (and other things). Check it out! Also, please give @wirespeed_ a follow to see more like this.
@wirespeed_
⚡️wirespeed
28 days
How a Unicode character made a .lnk file look like a .pdf in a phish! And how we triaged and contained that case + a related credential theft in ⚡️seconds!
0
0
5