blog.thinkst.comThinkst Thoughts – Writing about our experiences and research

blog.thinkst.com Profile

Blog.thinkst.com is a subdomain of Thinkst.com, which was created on 2009-08-27,making it 15 years ago.

Description:Writing about our experiences and...

Discover blog.thinkst.com website stats, rating, details and status online.Use our online tools to find owner and admin contact info. Find out where is server located.Read and write reviews or vote to improve it ranking. Check alliedvsaxis duplicates with related css, domain relations, most used words, social networks references. Go to regular site

blog.thinkst.com Information

HomePage size: 100.526 KB
Page Load Time: 0.350908 Seconds
Website IP Address: 13.226.225.92

blog.thinkst.com Similar Website

Feedback for your writing. Enter poetry and writing contests. Learn from feedback written on everyth
classic.fanstory.com
Express English | Let's Express our thoughts in English!
express.englishchats.org
Creative Blogs | Creative Writing | Creative Thoughts
creative.sulekha.com
Gentle Wisdom - Thoughts on life from Peter KirkGentle Wisdom | Thoughts on life from Peter Kirk
gentlewisdom.italiapa.com
Our.com - Our friends, our games, our world
de.our.com
Our Thoughts About Software Design And Development
blogs.quovantis.com
Virtual Team Building Experiences for Corporate Groups | Adá Experiences
stories.withada.co
Astor Hostels Experiences – powered by Keetoo – Astor Hostels Experiences – powered by
astor.keetoo.com
Our Witchy Blog | Sharing Witchy Thoughts and
festival.witchsfestusa.org
UCWbLing – writing about writing & peer writing
ucwbling.chicagolandwritingcenters.org

blog.thinkst.com Httpheader

Content-Type: text/html; charset=UTF-8
Transfer-Encoding: chunked
Connection: keep-alive
Server: nginx
Date: Thu, 16 May 2024 23:06:12 GMT
Strict-Transport-Security: max-age=31536000
Vary: Accept-Encoding, accept, content-type, cookie
Last-Modified: Thu, 16 May 2024 21:03:02 GMT
Cache-Control: max-age=122, must-revalidate
X-nananana: Batcache-Hit
X-hacker: Want root? Visit join.a8c.com and mention this header.
Host-Header: WordPress.com
Link: https://blog.thinkst.com/wp-json/; rel="https://api.w.org/", https://wp.me/eho3i; rel=shortlink
X-ac: 2.bur _atomic_bur STALE
X-Cache: Miss from cloudfront
Via: 1.1 ef3f6fb1096ef078a436775e644d75f4.cloudfront.net (CloudFront)
X-Amz-Cf-Pop: LAX50-C2
X-Amz-Cf-Id:

blog.thinkst.com Meta Info

charset="utf-8"/
content="width=device-width, initial-scale=1, maximum-scale=1" name="viewport"/
content="IE=edge" http-equiv="X-UA-Compatible"/
content="website" property="og:type"
content="Thinkst Thoughts" property="og:title"
content="https://blog.thinkst.com/" property="og:url"
content="https://blog.thinkst.com/wp-content/uploads/2022/10/Thinkst-Blog-Social-Media-Banner.png" property="og:image"/
content="Writing about our experiences and research findings" property="og:description"/
content="max-image-preview:large" name="robots"/
content="Writing about our experiences and research findings" name="description"/
content="website" property="og:type"/
content="Thinkst Thoughts" property="og:title"/
content="https://blog.thinkst.com/" property="og:url"/
content="Thinkst Thoughts"

blog.thinkst.com Ip Information

Ip Country: United States
Latitude: 37.751
Longitude: -97.822

blog.thinkst.com Html To Plain Text

findings Maybe Not Static FileMaybe Not Static FileMaybe Not Static FileMaybe Not Static FileMaybe Not Static FileMaybe Not Static File https://fonts-api.wp.com/css?family=Lora:400,700&subset=latin,latin-extHas ConditionalMaybe Not Static File //fonts-api.wp.com/css?family=Open+Sans%3Aregular%2Citalic%2C700&display=swapMaybe Not Static FileExcluded optionThinkst Thoughts LEARN MORE Thinkst Thoughts Visit Thinkst Visit Thinkst Canary Blog Posts Glory to the Glorifier Publish Date May 6, 2024 Marco Slaviero Any Thinksters who have been in physical or virtual proximity to me over the last year have likely suffered at least one whinge session about the Glorifier”. The especially fortunate have suffered several. I’m relieved to say that, at long last, the whinges are over. In this post, I’m going to walk through the travails of producing the Glorifier mostly as a cathartic exercise but extracting a few lessons from the experience. Our story is told in seven parts: Let’s … Continue Reading A Bird’s-eye view: IceID to Dagon Locker (The DFIR Report) Publish Date May 3, 2024 Casey Smith This is the first post in an ongoing series that aims to examine documented/public breaches with a special focus on Canary and Canarytoken deployment. The posts do not intend to imply that we would have been a silver bullet and prevented the breach; rather, our approach has been to help detect breaches. These posts are primarily intended to give our customers and users ideas for possible deployment options. We love the work done by the team at the DFIR report … Continue Reading Defending against the Attack of the Clone[d website]s! Publish Date January 30, 2024 Jacob Torrey Front matter In a previous post, Casey talked about our Cloned Website Canarytoken and how it fares against modern phishing attacks. Today, we are releasing two new versions of the token which alert you when an attacker is using an Adversary-in-the-Middle (AitM) attack against one of your sites. An added bonus is that the new tokens can be deployed on properties you only have limited administrative access to (like your Azure tenant login portal or hosted blog). In this post … Continue Reading Video File Canarytokens: to be or not to be Publish Date January 22, 2024 Gerrie Crafford Recently friend-of-Thinkst (and CTO of NCSC) Ollie Whitehouse tweeted this interesting tidbit: We’re always looking for new types of Canarytokens, so it would be cool if we used this method to create video file Canarytokens. Quick background explainer We build Canaries that act as entire machines, require almost no configuration and boot as various Operating Systems. The logic is that it takes you less than a minute to set it up, and when an attacker lands on your network, they … Continue Reading What personality” should I give my Canary? Publish Date January 18, 2024 anna You can do complex things with Canaries but you don’t need to. Even though Canaries will happily pose as SCADA equipment or Mainframes, a Windows personality, with a well-named fileshare, has caught attackers all over the world. Can it be that easy? Won’t really good attackers be suspicious? The answer is slightly counter-intuitive: Attackers who land on your network have to situate themselves. They have to poke around. But won’t they ignore a server that looks suspiciously unguarded? Almost never. … Continue Reading Oh Crumbs! (Breadcrumbs in Beta) Publish Date January 15, 2024 Quinn Davies tl;dr: You can now create breadcrumbs to lure attackers to your Canaries with just a few clicks. Canaries and (their) Discoverability Our thesis with Canary has always been simple: Attackers who land in your infrastructure need to situate themselves and they do this by looking around. They run commands and touch systems that regular users never need to. By being selective about which services Canaries offer we can find the sweet-spot of services that are super-trivial to deploy, super likely … Continue Reading A (beta) Canarytoken for Active Directory Credentials Publish Date December 11, 2023 Roberto Attackers on your network love finding stray credentials. They are an easy way to elevate privileges and are often one of the first things attackers look for during post-exploitation. There’s no shortage of places where these credentials can be found and surprisingly, there’s very little downside to attackers trying them… …unless there’s a way to drop decoy credentials. This isn’t a new idea, but it usually requires heavy tooling and configuration. Our newest AD tokens allow you to create fake … Continue Reading Cloned Website Token and Reverse Proxies Publish Date September 28, 2023 Casey Smith Our Cloned Website Token has been available for a long time now, both on our public Canarytokens.org site as well as for our Canary customers. It’s helped users all over the world detect attacks early in the process. We wanted to take a moment and go over some of the details of this token: how it works, how to create and use one, and critically, how it fares against the new Adversary-in-the-Middle” (AitM)-generation of phishing attacks.. The cloned website token … Continue Reading CourtVision – Where’s my padel at? Publish Date September 12, 2023 benjamin Labs is the research arm of Thinkst but research has always been a key part of our company culture. All Thinksters are encouraged to work with Labs on longer term projects. These become that Thinkster’s day job” for a while. (These are intended both for individual growth, and to stretch ourselves into new areas: They don’t have to be related to Canary or security). I took a brief hiatus from the engineering team to explore a computer vision project: CourtVision. … Continue Reading Default behaviour sticks (And so do examples) Publish Date August 21, 2023 Paul Gichuki Introduction We spend huge amounts of time sweating the details of our products. We want to remove all the friction we can from using them and want to make sure we never leave our users confused. To get this right, we do a bunch of things: we use simple language, we make extensive use of context-sensitive help and where it’s needed, we nudge users with illustrative examples. Recently we bumped into something that made us rethink our use of examples. Background … Continue Reading Posts navigation 1 2 3 … 15 Site Sidebar 2024 (6) 2023 (8) 2022 (8) 2021 (7) 2020 (13) 2019 (12) 2018 (13) 2017 (11) 2016 (2) 2015 (8) 2014 (6) 2013 (6) 2012 (5) 2011 (17) 2010 (21) Site Footer Loading Comments... Write a Comment... Email (Required) Name (Required) Website Maybe Not Static FileExternal URL: https://stats.wp.com/e-202420.jsAuthored with ?...

blog.thinkst.com Whois

Domain Name: THINKST.COM Registry Domain ID: 1567019158_DOMAIN_COM-VRSN Registrar WHOIS Server: whois.godaddy.com Registrar URL: http://www.godaddy.com Updated Date: 2024-02-13T08:57:41Z Creation Date: 2009-08-27T00:18:23Z Registry Expiry Date: 2025-08-27T00:18:23Z Registrar: GoDaddy.com, LLC Registrar IANA ID: 146 Registrar Abuse Contact Email: abuse@godaddy.com Registrar Abuse Contact Phone: 480-624-2505 Domain Status: clientDeleteProhibited https://icann.org/epp#clientDeleteProhibited Domain Status: clientRenewProhibited https://icann.org/epp#clientRenewProhibited Domain Status: clientTransferProhibited https://icann.org/epp#clientTransferProhibited Domain Status: clientUpdateProhibited https://icann.org/epp#clientUpdateProhibited Name Server: NS23.DOMAINCONTROL.COM Name Server: NS24.DOMAINCONTROL.COM DNSSEC: unsigned >>> Last update of whois database: 2024-05-18T08:57:58Z <<<