Elgin Harten Profile
Elgin Harten

@ElginHarten

Followers
87
Following
2K
Media
2
Statuses
289

Deloitte Advisory Specialist Master, Cyber Infrastructure Group. Government & Public Services. Cyber & Strategic Risk MVP.

Washington, DC
Joined November 2020
Don't wanna be here? Send us removal request.
@ElginHarten
Elgin Harten
4 years
Held this back when I wrote it b/c I felt that maybe I was being too harsh. However, as the pattern seems to be a continuing one, here it is: The Microsoft Religion
Tweet card summary image
elginharten.com
Overshadowed by one of the largest ransomware attacks in history involving Managed Service Provider (MSP) Kaseya that launched Independence Day weekend, Microsoft’s newest zero-day vulnerability kn...
0
0
3
@cyb3rops
Florian Roth ⚡️
3 years
Ridiculous vulnerability disclosure process with CrowdStrike Falcon Sensor
9
91
247
@tariqkrim
Tariq KRIM
3 years
RIP Kathleen Booth, who Invented the first assembly language. She was 100 years old, and I have not seen anything in the news about it, unfortunately. With her husband, they formed the smallest computer group in the UK. Respect!
22
2K
7K
@TrustedSec
TrustedSec
3 years
Our Research Lead @Carlos_Perez briefly goes over the new #Sysmon FileBlockExe featured released by #Microsoft in version 14.0. Watch the video now: https://t.co/nD9apoMOAF
2
14
47
@StopMalvertisin
Kimberly
3 years
Threatpost | iPhone Users Urged to Update to Patch 2 Zero-Days
0
3
3
@ElginHarten
Elgin Harten
3 years
"THE PERIMETER IS DISAPPEARING: Spencer and team made updates to Metasploit to help security teams keep up with [complex attack workflows], with more modern, streamlined workflows for testing the most common attack vectors." #CyberSecurity #opensource https://t.co/BcHWlmMzKN
rapid7.com
Pushing Open-Source Security Forward: Insights From Black Hat 2022 | Rapid7 Blog
0
0
0
@JGamblin
Jerry Gamblin
3 years
The House passed a defense spending bill saying you can't sell software to the DoD that has *any* known CVEs in it. https://t.co/6zO2pPgdwq
130
351
2K
@msftsecresponse
Microsoft Security Response Center
3 years
We are excited to announce that Microsoft Office will begin publishing Office symbols to continue to improve security and performance for customers and partners. Check out our blog for more details. https://t.co/qcHnUNKr3N
4
32
55
@ElginHarten
Elgin Harten
4 years
PATCH EXCHANGE NOW: "With this vulnerability, an unauthenticated attacker can perform configuration actions on mailboxes belonging to arbitrary users." #cybersecurity #infosec #proxytoken #vulnerability https://t.co/y1R8BK4l3E
0
1
0
@ElginHarten
Elgin Harten
4 years
"Zero trust is an architectural approach where inherent trust in the network is removed, the network is assumed hostile and each request is verified based on an access policy." #cybersecurity #infosec #zerotrust #enterprise #iam https://t.co/YfDpN81wbH
Tweet card summary image
ncsc.gov.uk
Zero trust architecture design principles 1.0 launched.
0
0
2
@ElginHarten
Elgin Harten
4 years
BLUF: "Let’s stop asking whether to pay or not to pay [ransoms] and instead ask what we can do to prevent tomorrow’s threats today." #cybersecurity #infosec #ransomware #threatintelligence https://t.co/4wu15dmkNt
infosecurity-magazine.com
Why sophisticated technologies are key to avoiding the 'pay or not to pay' conundrum
0
3
1
@ElginHarten
Elgin Harten
4 years
"Microsoft warns of a widespread credential phishing campaign that leverages open redirector links in email communications as a vector to trick users into visiting malicious websites while effectively bypassing security software." #cybersecurity #phish https://t.co/NB01xjHRTq
0
2
2
@ElginHarten
Elgin Harten
4 years
VM: "Most organizations [have the capacity to] keep up with the riskiest vulnerabilities—as long as they know which ones are risky, and preferably ahead of the exploitation event." #cybersecurity #infosec #vulnerability #prediction #predictiveintelligence https://t.co/0YUYDBrA9K
Tweet card summary image
venturebeat.com
Most companies address the minefield of threats with no clear strategy for where to start patching and what needs prioritization.
0
1
0
@ElginHarten
Elgin Harten
4 years
WHOLE NATION Cyber: "President Biden secured promises from major tech companies to spend significant sums improving the nation's cyber resiliency. Microsoft and Google each committed billions to specific cybersecurity investments." #cybersecurity #infosec https://t.co/kV3WMPAdrF
0
1
0
@ElginHarten
Elgin Harten
4 years
ROTATE KEYS: "Microsoft disabled the Chaos DB #vulnerability two weeks ago. Unfortunately, Microsoft cannot change its customers' primary keys itself; the onus is on #CosmosDB customers to rotate their keys." #cybersecurity #infosec #cloudsecurity https://t.co/VB414IDACa
0
2
0
@ElginHarten
Elgin Harten
4 years
"Arm China asserts their independence. It is the most publicized instance of a JV in China going rogue, but also the most dangerous one. Over the decades IP has been taken and replicated in China, but this may be the most brazen attempt yet." #mobile #iot https://t.co/obSGlw1eFa
0
0
0
@ElginHarten
Elgin Harten
4 years
#Ransomware events of the past can provide valuable lessons. Explore the steps an organization can take to stay ahead of #cyber threats. https://t.co/FWNaq7NIMC
0
0
1
@ElginHarten
Elgin Harten
4 years
"The downside: three words introduces greater predictability, which is exactly what hackers want. Add to this issue the fact that many users will gravitate to the names of their children or pets in passwords." #cybersecurity #infosec #passwords
@Adam_K_Levin
Adam Levin
4 years
Using a three-word password system to protect your accounts is a good idea, but it overlooks a major security issue.
0
1
1