Cybersecurity and Techโ€ขโ€ข7 min readโ€ข1235 words

๐Ÿšจ Security - BYOVD Techniques

โšกDirect Technical Summary

BYOVD (Bring Your Own Vulnerable Driver) techniques are used by threat actors to disable EDR (Endpoint Detection and Response) systems. This article discusses the BYOVD techniques

๐Ÿšจ Security - BYOVD Techniques

BYOVD (Bring Your Own Vulnerable Driver) techniques are used by threat actors to disable EDR (Endpoint Detection and Response) systems. This article discusses the BYOVD techniques used by threat actors and the importance of understanding these techniques to improve security.

Key Points:

  • BYOVD Techniques: BYOVD techniques involve bringing a vulnerable driver onto a system to disable EDR systems. This can be done by exploiting vulnerabilities in the driver or by using a vulnerable driver that has been previously compromised.

  • Threat Actor Motivations: Threat actors use BYOVD techniques to gain access to a system and maintain persistence. They may also use these techniques to disable EDR systems and avoid detection.

  • Countermeasures: To prevent BYOVD attacks, it is essential to keep drivers up to date and to use secure boot mechanisms. Additionally, EDR systems should be configured to detect and prevent the use of vulnerable drivers.

๐Ÿ”— Resources:

Image

Image


๐Ÿšจ Security - AI Governance and Systems Architecture

Importance of having actual security professionals working on AI governance, systems architecture, engineering, and application. It highlights the need for experienced security professionals to ensure the security of AI systems.

Key Points:

  • AI Governance: AI governance is critical to ensuring the security and reliability of AI systems. This involves establishing clear guidelines and regulations for the development and deployment of AI systems.

  • Systems Architecture: The systems architecture of AI systems is critical to ensuring their security. This involves designing systems that are secure by design and can detect and prevent attacks.

  • Engineering and Application: The engineering and application of AI systems is critical to ensuring their security. This involves using secure coding practices and testing AI systems for vulnerabilities.

  • Countermeasures: To improve AI security, it is essential to have actual security professionals working on AI governance, systems architecture, engineering, and application. This involves establishing clear guidelines and regulations for the development and deployment of AI systems and designing systems that are secure by design.

๐Ÿ”— Resources:

Image

Image


๐Ÿšจ Security - Air-Gap Jumping with Thermal

Use of thermal imaging to jump air-gaps and the importance of using secure USB cables to prevent data exfiltration.

Key Points:

  • Thermal Imaging: Thermal imaging can be used to jump air-gaps by detecting the heat signatures of devices.

  • USB Cables: Secure USB cables can be used to prevent data exfiltration and ensure the security of air-gapped systems.

  • Countermeasures: To prevent air-gap jumping, it is essential to use secure USB cables and to implement air-gap jumping detection systems.

๐Ÿ”— Resources:

Image

Image


๐Ÿšจ Security - Cyber Mentorship

Importance of cyber mentorship and the need for experienced security professionals to mentor and guide others in the field.

Key Points:

  • Cyber Mentorship: Cyber mentorship is critical to ensuring the security and reliability of cyber systems. This involves experienced security professionals mentoring and guiding others in the field.

  • Countermeasures: To improve cyber security, it is essential to have experienced security professionals working in the field and mentoring others.

๐Ÿ”— Resources:

Image

Image


๐Ÿšจ Security - AI Incestuous Relationships

Incestuous relationships between big AI companies and the need for transparency and accountability in the AI industry.

Key Points:

  • AI Incestuous Relationships: The AI industry is characterized by incestuous relationships between big AI companies. This can lead to a lack of transparency and accountability in the industry.

  • Countermeasures: To improve transparency and accountability in the AI industry, it is essential to establish clear guidelines and regulations for the development and deployment of AI systems.

๐Ÿ”— Resources:

Image

Image


๐Ÿšจ Security - UFO Case

UFO case from 74 years ago and the need for critical thinking and skepticism in the face of unexplained phenomena.

Key Points:

  • UFO Case: A UFO case from 74 years ago was recently digitized and released by the US Government. The case was initially thought to be a seagull, but some analysts believed it was not.

  • Countermeasures: To improve critical thinking and skepticism in the face of unexplained phenomena, it is essential to approach such cases with a healthy dose of skepticism and to consider alternative explanations.

๐Ÿ”— Resources:

Image

Image


๐Ÿšจ Security - Excel Format Rosetta-Stone Map

Excel format Rosetta-stone map of APT names provided by Microsoft and the importance of having a comprehensive list of APT names.

Key Points:

  • Excel Format Rosetta-Stone Map: Microsoft has provided an Excel format Rosetta-stone map of APT names. This map can be used to identify and track APT activity.

  • Countermeasures: To improve APT tracking and identification, it is essential to have a comprehensive list of APT names and to use tools like the Excel format Rosetta-stone map.

๐Ÿ”— Resources:

Image

Image


๐Ÿšจ Security - Cyber Mentorship Opportunity

Opportunity to nominate someone deserving for a TCM Security learning path and the importance of cyber mentorship.

Key Points:

  • Cyber Mentorship Opportunity: TCM Security is offering an opportunity to nominate someone deserving for a learning path. This is an excellent opportunity for cyber mentorship and to improve cyber security.

  • Countermeasures: To improve cyber security, it is essential to have experienced security professionals working in the field and mentoring others.

๐Ÿ”— Resources:

Image

Image


๐Ÿšจ Security - AI Lab Experience

Experience of working in an AI lab and the importance of real-world experience in the field of AI.

Key Points:

  • AI Lab Experience: The author discusses their experience working in an AI lab and the importance of real-world experience in the field of AI.

  • Countermeasures: To improve AI security, it is essential to have experienced security professionals working in the field and mentoring others.

๐Ÿ”— Resources:

Image

Image


๐Ÿšจ Security - Cyber Security Reality

Reality of cyber security and the need for experienced security professionals to work in the field.

Key Points:

  • Cyber Security Reality: The author discusses the reality of cyber security and the need for experienced security professionals to work in the field.

  • Countermeasures: To improve cyber security, it is essential to have experienced security professionals working in the field and mentoring others.

๐Ÿ”— Resources:

Image

Image


๐Ÿšจ Security - Cyber Security Team

Importance of having a strong cyber security team and the need for experienced security professionals to work in the field.

Key Points:

  • Cyber Security Team: A strong cyber security team is critical to ensuring the security and reliability of cyber systems. This involves experienced security professionals working in the field and mentoring others.

  • Countermeasures: To improve cyber security, it is essential to have a strong cyber security team and to implement robust security measures.

๐Ÿ”— Resources:

Image

Image

๐Ÿ“‚Source / Implementation:Cybersecurity and Tech / resources-215.md
GitHub Repositoryโ†—

Related Cybersecurity and Tech Breakdowns

Drishtant Ghosh (Drix10)
Drishtant Ghosh (Drix10)โ€ขAuthor & Engineer

Technical founder and engineer working across AI systems, developer infrastructure, and cybersecurity.

PortfolioยทGitHubยทLinkedInยทXยทEmail