Blog
Search all our posts or browse some of our most recent entries below:
7MS #298: How to Succeed in Business Without Really Crying – Part 2
Last week I talked about how business has been going with the LLC. Today I answer some additional questions that I didn't have time to address:How I'm finding leads/projects to work on (TLDR: I'm NOT sending 1TB of PDFs to people, spamming them, calling them endlessly or LinkedIn'ing everybody and their mom)The interesting conversations I'm having with customers who seem a little tired of the [...]
7MS #297: How to Succeed in Business Without Really Crying
Hey! So back in episode 287 I talked about how I was upgrading 7 Minute Security and turning it into an LLC. Since then I've gotten a lot of questions like "Hey, how do I start my own security company? What's it cost? How do you find business? Are you living in your mom's basement, or has 7MS found some success?" I try to live [...]
7MS #296: WEFFLES – Windows Event Logging Forensic Logging Enhancement Services
WEFFLES are delicious!WEFFLES stands for Windows Event Logging Forensic Logging Enhancement Services and is Microsoft's cool (and free!) console for responding to incidents and hunting threats. I had a chance to play with it in the lab this week and for the most part, the install of WEFFLES went well, but I had one minor issue that was cleared up easily.As I went through the [...]
7MS #295: Interview with Kevin Keane
Today I'm excited to be joined by my friend and advisor Kevin Keane (Twitter / LinkedIn) who is a lawyer, blogger, keynote speaker, business advisor, and just all around great guy. Kevin and I sit down to talk about:How SMBs can take some productive security baby stepsHow to get the most value out of your next security consultant engagementCan breaches ever be funny?What is the [...]
7MS #294: GDPR Me ASAP
We're talkin' about GDPR today!GDPR in a nutshellGDPR, in a nutshell, is a set of legal regulations focused on the privacy of personal information for EU citizens - no matter where they are. Entities that store and/or process personal information about EU citizens must clearly explain to the citizens what data is being stored and processed, and any parties the data is being shared with. [...]
7MS #293: How to Become a Packtpub Author – Part 2
Back in episode 280 I talked about how I started working with PacktPub to start authoring a video course on vulnerability scanning using Kali.Since that episode I've found that recording and editing high quality video clips is taking waaaaaayyyyyyyyyyy longer than I'd like, but it's worth it to create good stuff! PacktPub authored a tool called Panopto to make videos, but I found it a [...]
7MS #292: OFF-TOPIC – How I Nearly Killed My Sister with a Snowball
Hey folks, I had originally planned to cover the CredDefense toolkit but I couldn't get it working. I'm basically having the same issue that someone reported here. Sooooo....will have to save that for next week.In the meantime, this episode features a story about how I nearly knocked a retina out of my sister's face with an ice ball when I was about 8 years old. [...]
7MS #291: The Quest for Critical Security Controls – Part 4
Did I mention I love the Critical Security Controls? I do. And here's an absolute diamond I found this week:This site (http://www.auditscripts.com/free-resources/critical-security-controls/) offers awesome CSC-mapping tools (and they're free!), specifically:A spreadsheet with how the CSCs map to other popular frameworks like ISO and NISTA manual assessment tool for measuring your org - or someone else's org - against the CSCs. Flippin' sweet right? RIGHT!Also, be [...]
7MS #290: Interview with Joe Klein
My pal and former coworker Joe Klein joins me in the virtual studio to discuss:His career as a diesel mechanic and insurance guruHow to leave a stable job, take a huge pay cut and start a risky infosec internship (sounds like the name of a broadway musical!)The start of his new career as a SOC analystThe importance of having a career cheerleader/mentorBeing hungry for knowledge [...]
7MS #289: I’m Dipping My Toes in Windows Forensics
Two weird things happening in this episode:I'm not in the car, and thus not endangering myself and others while podcasting and driving!My once beloved lav mic made a trip through the Johnson family's washer and dryer. I don't know that she'll ever record anything again. We'll see once it fully dries out (fingers crossed).I spent some time this last week getting back into Windows systems [...]
7MS #288: I’m BURPing a Lot
Mac High Sierra root bugDid you hear about this? Basically anybody could log in as user root on your system without a password because...there isn't a password! Read the Twitter thread where I originally read the news here, read about the root account madness here, and then read how the fix broke file sharing here.BPATTY ROCKS!I tried to wiki-fy my BPATTY project to make it [...]
