惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

D
Darknet – Hacking Tools, Hacker News & Cyber Security
宝玉的分享
宝玉的分享
Hugging Face - Blog
Hugging Face - Blog
Recent Announcements
Recent Announcements
H
Hackread – Cybersecurity News, Data Breaches, AI and More
Vercel News
Vercel News
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
T
The Blog of Author Tim Ferriss
博客园 - 司徒正美
Cyberwarzone
Cyberwarzone
S
Securelist
www.infosecurity-magazine.com
www.infosecurity-magazine.com
The GitHub Blog
The GitHub Blog
云风的 BLOG
云风的 BLOG
T
Tenable Blog
NISL@THU
NISL@THU
博客园 - 三生石上(FineUI控件)
V
Vulnerabilities – Threatpost
N
Netflix TechBlog - Medium
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
S
SegmentFault 最新的问题
WordPress大学
WordPress大学
C
CXSECURITY Database RSS Feed - CXSecurity.com
G
Google Developers Blog
Forbes - Security
Forbes - Security
月光博客
月光博客
博客园 - 叶小钗
Spread Privacy
Spread Privacy
Last Week in AI
Last Week in AI
H
Help Net Security
TaoSecurity Blog
TaoSecurity Blog
Scott Helme
Scott Helme
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
Stack Overflow Blog
Stack Overflow Blog
N
News and Events Feed by Topic
爱范儿
爱范儿
aimingoo的专栏
aimingoo的专栏
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
The Hacker News
The Hacker News
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
P
Privacy International News Feed
D
DataBreaches.Net
O
OpenAI News
cs.AI updates on arXiv.org
cs.AI updates on arXiv.org
Latest news
Latest news
J
Java Code Geeks
Project Zero
Project Zero
V
V2EX
Security Latest
Security Latest
AI
AI

Company Updates Archives - SpecterOps

SpecterOps and OpenAI: Helping to Build a New Security Frontier with Daybreak SpecterOps Selected for OpenAI’s Trusted Access for Cyber Program Introducing BloodHound Scentry: Accelerate Your Identity Attack Path Management Practice with Expert Guidance Fueling the Fight Against Identity Attacks Life at SpecterOps Part II: From Dream to Reality Life at SpecterOps: The Red Team Dream Final Steps to BloodHound Enterprise for Government— FedRAMP High Compliance BloodHound Community Edition: A New Era Introducing BloodHound 4.3 — Get Global Admin More Often Introducing BloodHound 4.2 — The Azure Refactor War In Ukraine Announcing Azure in BloodHound Enterprise AWS ReadOnlyAccess: Not Even Once The Attack Path Management Manifesto Introducing BloodHound 4.0: The Azure Update “Voting is not only our right — it is our power.” — Loung Ung SpecterOps Badge Life A Push Toward Transparency Announcing Our Formal Partnership with Palantir Introducing the Adversary Resilience Methodology — Part Two Introducing the Adversary Resilience Methodology — Part One
Raphael’s Thoughts: SpecterOps acquires MINIS
Raphael Mudge · 2017-11-02 · via Company Updates Archives - SpecterOps

Today, SpecterOps announces its acquisition of MINIS LLC. The company is doing its social media thing to spread the word. I wanted to take a moment to share the news and comment on it in my own words. If you want press release language, we have that too.

To evaluate an operation, military planners often discuss measures of performance and effectiveness.

Performance discusses the technical execution of the operation. How well did the operators adhere to the plan? How skillfully did they carry out the complex tasks asked of them? It’s quite possible to have perfect execution and fail to meet the objective of the operation. That’s why performance is one measure. Effectiveness is the other. Effectiveness is a measure of the success of the operation, overall.

In a highly technical role, like adversary simulations, it’s easy to lose ourselves in measures of performance. How many shells did you get? How many findings are there? Did we get DA? How evasive, scary, and cool is our malware? What kind of bypasses did we use? Our community is regularly abuzz with discussion of technical innovations. It’s good stuff.

There are too few voices discussing the big picture of red team operations and adversary simulations. How do we do this in a professional, safe, and repeatable way? How do these efforts directly benefit a program? How do we measure this benefit? This is the big picture “measure of effectiveness” stuff.

We care about this at SpecterOps. We don’t execute an engagement, write a report, and leave. We care about how to make this work have a lasting impact on our customers. We care about disseminating best practices to all.

And, that’s why I’m so excited about the MINIS LLC team joining SpecterOps.

Andrew ChilesDerek RushingJames Tubberville, and Joe Vest are skilled operators. All spent parts of their career with a Department of Defense red team. Today, they’re an important voice on the big picture topics related to red team operations and adversary simulations. How do we do this in an effective and impactful way?

Since MINIS LLC was founded, several firms sought them out to learn tradecraft and sharpen their red team offerings. This opportunity to influence expanded a great deal when James Tubberville and Joe Vest co-authored the SANS Red Teaming and Threat Emulation course. Their course focuses heavily on the big picture topics. MINIS LLC gets “threat emulation” and I’ve always seen them as a key ally, helping to drive these ideas forward.

They. Them. Not anymore! Us. I’m very excited to welcome Andrew, Derek, James, and Joe to SpecterOps. You’ve done so much under the MINIS banner. I’m very excited about what we’ll do together.

Originally published at blog.cobaltstrike.com on November 1, 2017.

Post Views: 375