
Invictus Incident Response
@InvictusIR
Followers
2K
Following
469
Media
95
Statuses
371
Helping organizations respond to cyber incidents in the cloud | ๐ 24/7 support https://t.co/zfF62gimvm | ๐ Academy https://t.co/GH0u8tmjXJ
โ๏ธ
Joined May 2021
๐ซ Do you prefer live training events, we've got you covered! You can join us and ask all your questions at our select live training events. @brucon @defcon @BlackHatEvents . โ๏ธ Sign-up via:
1
0
3
Invictus ๐ K8S. ๐ We have developed a new tool KubeForenSys, for Kubernetes forensics in AKS. Check out the blog and grab the tool .๐ ๐ ๏ธ #stayInvictus #CloudIncidentResponse #kubernetes #aks.
github.com
A Kubernetes Forensic Collection Framework for Azure Kubernetes Service - invictus-ir/KubeForenSys
0
11
31
๐จ Volume 3 | Profiling TradeTraitor (DPRK) ๐จ . Our latest and greatest blog in our series on Cloud Threat Actors. This one is on the the infamous DPRK-nexus crew behind billion-dollar cryptocurrency heists. Check it out: . #stayInvictus.
0
4
9
We've just published our latest threat actor profile on #LaundryBear.Check it out if you want to learn how they work, who they target and their TTPs. #stayInvictus #CloudIncidentResponse.
0
6
19
We've started a new series on Cloud focused threat actors, today Part I on #JavaGhost. Check it out, if you want to learn how they operate, who they target and how you can defend against them. #stayInvictus #CloudIncidentResponse #JavaGhost.
0
6
27
RT @cybershtuff: ๐จ New blog from @datadoghq on fresh AWS TTPs! Me and Team @InvictusIR pivoted & enriched their infra data to uncover theโฆ.
securitylabs.datadoghq.com
A cloud attack targeting Amazon SES and persistence via AWS Lambda, AWS IAM Identity Center and AWS IAM
0
4
0
๐Time to update your favorite cloud IR tool, the Microsoft Extractor Suite! . ๐๐ฉ๐๐๐ญ๐-๐๐จ๐๐ฎ๐ฅ๐ -๐๐๐ฆ๐ ๐๐ข๐๐ซ๐จ๐ฌ๐จ๐๐ญ-๐๐ฑ๐ญ๐ซ๐๐๐ญ๐จ๐ซ-๐๐ฎ๐ข๐ญ๐. Release notes for version 3.0.4. ๐ .- Added -UserIds parameter to Get-Users for filtering by specific user IDs. -.
0
7
30
What do you get when you combine BlackBasta leaks and Scattered Spider? An awesome new blog, where we discuss how these two groups operate in the cloud and their TTPs. #stayInvictus #CloudIncidentResponse #CTI #DFIR.
0
7
29