New Training: Advanced Agentic Workflows for Cybersecurity Research & Threat Intelligence

New CompSec Direct Training @Kleared4 Advanced Agentic Workflows for Cybersecurity Research & Threat Intelligence Move your team from manual prompt engineering to secure, auditable, multi-agent AI workflows that accelerate research, vulnerability reconnaissance, OSINT synthesis, compliance [...]

By CompSec Direct|2026-05-20T20:28:22-04:00May 20th, 2026|Categories: AI, Automation, Cyber, Training |Tags: agentic, AI, Training, workflows|Comments Off on New Training: Advanced Agentic Workflows for Cybersecurity Research & Threat Intelligence

Read More

Cyber Range Training on Kleared4

Gallery

Cyber Range Training on Kleared4

Cyber, Training

Cyber Range Training on Kleared4

Cyber Range Training on Kleared4

Our class dates for cyber training have been updated for Kleared4: Tunneling and Tradecraft, Kleared4: Incident Responder Windows, Kleared4: Incident Responder Linux, Kleared4: Incident Management and Kleared4: Container Security. All cybersecurity trainings are live, led [...]

By CompSec Direct|2025-07-24T10:33:18-04:00July 24th, 2025|Categories: Cyber, Training |Tags: Cyber, cyber range, kleared4, Kleared4 Cyber Range, Training|Comments Off on Cyber Range Training on Kleared4

Read More

Intelligence Community (IC) BEC and Phishing leads to a bad day: Why using Kleared4 kicks ass

Gallery

Intelligence Community (IC) BEC and Phishing leads to a bad day: Why using Kleared4 kicks ass

Attribution, Breach, Cyber, Defensive Methodology, Disclosure, Hacking, Incident Response, Social Engineering

Intelligence Community (IC) BEC and Phishing leads to a bad day: Why using Kleared4 kicks ass

Intelligence Community (IC) BEC and Phishing leads to a bad day: Why using Kleared4 kicks ass

On July 17 2025, we received an email from an IC company. Thing is, we can’t be sure about emails like this since we do Business Development (BD), but none of us knew the person [...]

By CompSec Direct|2025-07-18T13:49:34-04:00July 17th, 2025|Categories: Attribution, Breach, Cyber, Defensive Methodology, Disclosure, Hacking, Incident Response, Social Engineering |Tags: BEC, Cyber, IC|Comments Off on Intelligence Community (IC) BEC and Phishing leads to a bad day: Why using Kleared4 kicks ass

Read More

Breach Village Capture the Flag and Hack the Case

Gallery

Breach Village Capture the Flag and Hack the Case

Breach, Creative, Cyber, Defensive Methodology, Demo, Events, Hacking, phishing, Training

Breach Village Capture the Flag and Hack the Case

Breach Village Capture the Flag and Hack the Case

CompSec Direct ran Breach Village during a local BSides conference. "We wanted Breach Village to showcase real-problems and not the made up scenarios people see in Capture the Flags events. Realism and modern problems in [...]

By CompSec Direct|2025-04-29T20:56:29-04:00April 15th, 2025|Categories: Breach, Creative, Cyber, Defensive Methodology, Demo, Events, Hacking, phishing, Training |Tags: breach village, Cyber, Kleared4 Cyber Range, Rate My Phish|Comments Off on Breach Village Capture the Flag and Hack the Case

Read More

AI Powered Phishing Rating

Gallery

AI Powered Phishing Rating

AI, Automation, Containers, Cyber, Defensive Methodology, phishing, Software

AI Powered Phishing Rating

AI Powered Phishing Rating

CompSec Direct developed an AI powered phishing rater to determine how impactful a phishing email or text is. We created a simple to use interface powered by a well designed framework to accurately measure phishing [...]

By CompSec Direct|2025-04-29T14:41:10-04:00March 11th, 2025|Categories: AI, Automation, Containers, Cyber, Defensive Methodology, phishing, Software |Tags: AI, Cyber, email, phishing, text|Comments Off on AI Powered Phishing Rating

Read More

Kleared4 Edge Fly Away Kits

Gallery

Kleared4 Edge Fly Away Kits

Cyber, Defensive Methodology, Design, Hunting, Incident Response, Pen-testing

Kleared4 Edge Fly Away Kits

Kleared4 Edge Fly Away Kits

During pandemic, we could not travel to customer locations and wanted to continue working on providing quality pentests and incident response services. CompSec Direct created small shippable cyber kits packaged inside PPE containers and has [...]

By CompSec Direct|2025-04-29T14:19:36-04:00January 3rd, 2025|Categories: Cyber, Defensive Methodology, Design, Hunting, Incident Response, Pen-testing |Tags: Cyber, fly away kits, Kleared4 Edge|Comments Off on Kleared4 Edge Fly Away Kits

Read More

Using Containers to Analyze Malware at Scale workshops

Gallery

Using Containers to Analyze Malware at Scale workshops

AV Bypass, Containers, Cyber, Defensive Methodology, Events, Hacking, Training

Using Containers to Analyze Malware at Scale workshops

Using Containers to Analyze Malware at Scale workshops

Our president was able to teach over 200 participants at six cyber security focused conferences in an full-day workshop. Participants used Kleared4, our US made and hosted cyber range to analyze malware samples in a [...]

By CompSec Direct|2025-04-29T13:12:13-04:00August 20th, 2024|Categories: AV Bypass, Containers, Cyber, Defensive Methodology, Events, Hacking, Training |Tags: Cyber, cyber range, kleared4, Malware|Comments Off on Using Containers to Analyze Malware at Scale workshops

Read More

Ransomware case study: echoraix

Gallery

Ransomware case study: echoraix

Attribution, Case Study, Defensive Methodology, Forensic, Reports

Ransomware case study: echoraix

Ransomware case study: echoraix

We are providing our case study on echoraix, a ransomware group that targets network connected storage appliances from QNAP and Synology. Please share this case study with others and contact us for similar case studies, [...]

By CompSec Direct|2024-08-05T14:49:05-04:00August 5th, 2024|Categories: Attribution, Case Study, Defensive Methodology, Forensic, Reports |Tags: case study, ransomeware, Ransomware Protection|Comments Off on Ransomware case study: echoraix

Read More

Trainings @Kleared4

Gallery

Trainings @Kleared4

Containers, Cyber, Forensic, Incident Response, Training

Trainings @Kleared4

Trainings @Kleared4

We offer comprehensive cyber security training using our Kleared4 cyber-range. Please use the links below to visit @Kleared4 for class information and details. Please contact us for details on performing in-person training, other options and [...]

By CompSec Direct|2023-09-01T12:30:51-04:00September 1st, 2023|Categories: Containers, Cyber, Forensic, Incident Response, Training |Comments Off on Trainings @Kleared4

Read More

Using containers to analyze malware at scale coming to BSides Nova 2023

Gallery

Using containers to analyze malware at scale coming to BSides Nova 2023

Containers, Cyber, Defensive Methodology, Events, Training, Uncategorized

Using containers to analyze malware at scale coming to BSides Nova 2023

🕵‍Our President, Jose Fernandez will run our Using containers to analyze malware at scale (UCTAMAS) workshop at BSidesNoVA on Sep 8, 2023. This is the 4th run of this workshop which takes participant feedback to [...]

By CompSec Direct|2023-08-15T07:29:29-04:00August 15th, 2023|Categories: Containers, Cyber, Defensive Methodology, Events, Training, Uncategorized |Tags: bsides Nova 2023, compsec direct, Cyber, Malware, workshop|Comments Off on Using containers to analyze malware at scale coming to BSides Nova 2023

Read More

My CPAP has a recall; let’s open it instead!

Gallery

My CPAP has a recall; let’s open it instead!

Demo, firmware, Forensic, Hacking, Medical, Videos

My CPAP has a recall; let’s open it instead!

My CPAP has a recall; let’s open it instead!

"If you or a loved one has ever used a CPAP device..." Our President, Jose Fernandez, gave a medical device presentation at BioHacking Village during DefCon 31. This presentation focused on bringing awareness to privacy [...]

By CompSec Direct|2023-08-13T12:50:04-04:00August 12th, 2023|Categories: Demo, firmware, Forensic, Hacking, Medical, Videos |Tags: cpap, Dream Station 1, firmware, forensics, Hacking, Phillips, reverse engineering|Comments Off on My CPAP has a recall; let’s open it instead!

Read More

Know the players in Cyber: how little we know about the leaders of our cyber adversaries

Gallery

Know the players in Cyber: how little we know about the leaders of our cyber adversaries

Creative, Cyber, Events, Networking, Reports, Survey

Know the players in Cyber: how little we know about the leaders of our cyber adversaries

During HammerCon 2022, we ran a timed 60-second 5 question quiz to determine which country was the biggest threat in Cyber. We created adaptive questions sets that would correspond to selections, and we were not [...]

By CompSec Direct|2022-12-07T19:05:34-05:00December 7th, 2022|Categories: Creative, Cyber, Events, Networking, Reports, Survey |Tags: compsec direct, Cyber, Quiz, Reports, survey, Threat Report|Comments Off on Know the players in Cyber: how little we know about the leaders of our cyber adversaries

Read More

Malware analysis workshop at AvengerCon VII

Gallery

Malware analysis workshop at AvengerCon VII

Automation, Containers, Cyber, Defensive Methodology, Hunting, Training

Malware analysis workshop at AvengerCon VII

Malware analysis workshop at AvengerCon VII

Our President, Jose Fernandez, ran a malware analysis workshop using containers during AvengerCon VII. The event, hosted at Dreamport in Columbia, MD allowed participants to use Kleared4, our disassociated cyber-range, to safely analyze and triage [...]

By CompSec Direct|2022-12-05T10:15:54-05:00December 5th, 2022|Categories: Automation, Containers, Cyber, Defensive Methodology, Hunting, Training |Tags: AvengerCon, compsec direct, Cyber, Malware, Ransomware|Comments Off on Malware analysis workshop at AvengerCon VII

Read More

Autodyne: Automated firmadyne for firmware emulation

Gallery

Autodyne: Automated firmadyne for firmware emulation

Automation, Containers, Cyber, emulation, firmware, Scripts

Autodyne: Automated firmadyne for firmware emulation

Autodyne: Automated firmadyne for firmware emulation

Emulate device firmware using containers with Autodyne. We crossed 2k pulls on dockerhub! Our CI pipeline for daily updated images for ubuntu 18 / ubuntu 20 has been growing strong since we open-sourced the images. [...]

By CompSec Direct|2022-12-04T16:21:19-05:00December 4th, 2022|Categories: Automation, Containers, Cyber, emulation, firmware, Scripts |Tags: autodyne, compsec direct, Cyber, emulation, firmadyne, firmware|Comments Off on Autodyne: Automated firmadyne for firmware emulation

Read More

CompSec Direct recognized by Microsoft with Firmware analysis specialization

Gallery

CompSec Direct recognized by Microsoft with Firmware analysis specialization

Contracts, Cyber, Defensive Methodology, Design, firmware, News, Partnerships

CompSec Direct recognized by Microsoft with Firmware analysis specialization

CompSec Direct is Microsoft recognized for firmware analysis. This is a new specialization within the Defender for IoT ecosystem of Microsoft's security portfolio. We can help your organization find vulnerabilities within your IoT devices and [...]

By CompSec Direct|2024-12-16T19:04:36-05:00August 18th, 2022|Categories: Contracts, Cyber, Defensive Methodology, Design, firmware, News, Partnerships |Tags: analysis, compsec direct, Cyber, firmware, Microsoft, partners|Comments Off on CompSec Direct recognized by Microsoft with Firmware analysis specialization

Read More

HammerCon 2022 Cyber-Quiz

Gallery

HammerCon 2022 Cyber-Quiz

Cyber, Survey

HammerCon 2022 Cyber-Quiz

HammerCon 2022 Cyber-Quiz

HammerCon 2022 Cyber-Quiz

By CompSec Direct|2022-12-04T16:50:37-05:00May 18th, 2022|Categories: Cyber, Survey |Tags: compsec direct, cyber quiz, hammercon, hammercon2022|Comments Off on HammerCon 2022 Cyber-Quiz

Read More

BSides Charm 2022

Gallery

BSides Charm 2022

Cyber, Events, Networking

BSides Charm 2022

BSides Charm 2022

We helped the event by providing sponsorship funds. This allows BSides to continue operating, providing speaking opportunities, and presentation workshops within the local area that would otherwise be presented at larger security conferences. Thanks for [...]

By CompSec Direct|2022-12-04T16:43:29-05:00May 2nd, 2022|Categories: Cyber, Events, Networking |Tags: Bsides, BSides Charm 2022, Cyber|Comments Off on BSides Charm 2022

Read More

CompSec Direct is a 2022 VIP Start graduate from the National Veteran Institute For Procurement

Gallery

CompSec Direct is a 2022 VIP Start graduate from the National Veteran Institute For Procurement

Contracts, Networking, News

CompSec Direct is a 2022 VIP Start graduate from the National Veteran Institute For Procurement

CompSec Direct is a 2022 VIP Start graduate from the National Veteran Institute For Procurement

CompSec Direct graduated from VIP Start! This is a 4-month program to help small veteran-owned business with government contracting, procurement and growth for small SDVOSB, 8A companies, minority owned companies. If you are a veteran [...]

By CompSec Direct|2025-04-29T14:55:26-04:00February 28th, 2022|Categories: Contracts, Networking, News |Tags: compsec direct, contracting, Cyber, Government|Comments Off on CompSec Direct is a 2022 VIP Start graduate from the National Veteran Institute For Procurement

Read More

AvengerCon VI

Gallery

AvengerCon VI

Events, News

AvengerCon VI

AvengerCon VI

We were exited to sponsor AvengerConVI for a second year.We look forward to the event in 2022. #AvengerCon #CompSecDirect Our T-Shirt was unofficially the winner of best swag. Be sure to checkout local events or [...]

By CompSec Direct|2022-08-17T09:44:03-04:00November 30th, 2021|Categories: Events, News |Tags: AvengerCon, Cyber|Comments Off on AvengerCon VI

Read More

CompSec Direct gets press mentions for cybersecurity expertise

Gallery

CompSec Direct gets press mentions for cybersecurity expertise

Cyber, News, Puerto Rico

CompSec Direct gets press mentions for cybersecurity expertise

CompSec Direct gets press mentions for cybersecurity expertise

CompSec Direct Executive Team with a a Kleared4 Edge unit. Picture taken by R. Fernandez. We were interviewed in 2021 by El Nuevo Día, a local newspaper in Puerto Rico. Some the of the issues we [...]

By CompSec Direct|2022-12-04T16:22:50-05:00July 22nd, 2021|Categories: Cyber, News, Puerto Rico |Tags: Cyber, cybersecurity, el nuevo dia, Government, interviewed, Puerto Rico|Comments Off on CompSec Direct gets press mentions for cybersecurity expertise

Read More

Ransomware: Hacienda of Puerto Rico

Gallery

Ransomware: Hacienda of Puerto Rico

Attribution, Breach, Case Study, Contracts, Cyber, Defensive Methodology, Disclosure, Firewall, Forensic, Hacking, Incident Response, Reports

Ransomware: Hacienda of Puerto Rico

Ransomware: Hacienda of Puerto Rico

Ransomware: Hacienda of Puerto Rico

By CompSec Direct|2023-04-15T14:36:51-04:00June 21st, 2021|Categories: Attribution, Breach, Case Study, Contracts, Cyber, Defensive Methodology, Disclosure, Firewall, Forensic, Hacking, Incident Response, Reports |Tags: case study, Ransomware, Ransomware Protection|Comments Off on Ransomware: Hacienda of Puerto Rico

Read More

Kleared4 closed-operation fly-away edge kit

Gallery

Kleared4 closed-operation fly-away edge kit

Automation, Cyber, Defensive Methodology, Design, Forensic, Hacking, Hunting, Incident Response, Networking

Kleared4 closed-operation fly-away edge kit

Kleared4 closed-operation fly-away edge kit

Kleared4 closed-operation fly-away edge kit

By CompSec Direct|2022-06-14T23:15:09-04:00June 7th, 2021|Categories: Automation, Cyber, Defensive Methodology, Design, Forensic, Hacking, Hunting, Incident Response, Networking |Tags: compsec direct, fly away kits, kleared4, linux based pc, pelican 1200|Comments Off on Kleared4 closed-operation fly-away edge kit

Read More

CompSec Direct wins firmware analysis prototype event held at Dreamport

Gallery

CompSec Direct wins firmware analysis prototype event held at Dreamport

Automation, Cyber, Reports

CompSec Direct wins firmware analysis prototype event held at Dreamport

After placing 5th on a previous challenge, we were happy to place 1st on a subsequent firmware c. We improved our process, provided analysis and emulation findings to set us apart from the rest. Please [...]

By CompSec Direct|2024-12-16T19:09:06-05:00June 8th, 2020|Categories: Automation, Cyber, Reports |Tags: Cyber, dreamport, firmware, RPE|Comments Off on CompSec Direct wins firmware analysis prototype event held at Dreamport

Read More

Non-attribution classification model published

Gallery

Non-attribution classification model published

Attribution, Cyber

Non-attribution classification model published

Non-attribution classification model published

Non-attribution classification model published

By CompSec Direct|2022-06-14T23:17:04-04:00March 8th, 2020|Categories: Attribution, Cyber |Tags: attribution, Cyber, mcpa, models, non-attribution|Comments Off on Non-attribution classification model published

Read More

BSides PR 2019

Gallery

BSides PR 2019

Case Study, Cyber, Defensive Methodology, Disclosure, Forensic, Incident Response, Laws, Legislation, Videos

BSides PR 2019

BSides PR 2019

Our President, @jfersec, had the privilege of Keynote during BSides PR 2019. During our presentation, we discussed some hard truth's around: the way DeepFakes and "WeakFakes" are utilizedhow we are good imitators and bad innovators [...]

By CompSec Direct|2022-06-15T00:20:50-04:00October 16th, 2019|Categories: Case Study, Cyber, Defensive Methodology, Disclosure, Forensic, Incident Response, Laws, Legislation, Videos |Tags: Breach, Bsides PR 2019, Cyber, DeepFakes, hacienda, Puerto Rico, Rossello Comms, WeakFakes|Comments Off on BSides PR 2019

Read More

CTF-Pasteables

Gallery

CTF-Pasteables

Cyber, Hacking, Pen-testing, Powershell, Scripts, Tor

CTF-Pasteables

CTF-Pasteables

“Typing Kills”, so even if you do not agree with this; it’s true. Operator error grows the more you type. It’s akin to “measure twice, cut once”. In Capture the Flags (CTF’s), we often redo [...]

By CompSec Direct|2022-06-13T17:38:43-04:00October 16th, 2019|Categories: Cyber, Hacking, Pen-testing, Powershell, Scripts, Tor |Comments Off on CTF-Pasteables

Read More

Open-Data wants to be free, but no one looks.

Gallery

Open-Data wants to be free, but no one looks.

e-Discovery, Hunting, Scripts

Open-Data wants to be free, but no one looks.

Open-Data wants to be free, but no one looks.

Problem: A few months ago, Giancarlo Gonzales, a former CIO for the island of Puerto Rico, indicated the lack of updates towards open-data in data.pr.gov. As part of an open-data initiative, Puerto Rico created its own [...]

By CompSec Direct|2022-06-15T00:22:50-04:00September 29th, 2019|Categories: e-Discovery, Hunting, Scripts |Tags: censys, data.pr.gov, open-data, pr.gov, Puerto Rico, scripts, shodan|Comments Off on Open-Data wants to be free, but no one looks.

Read More

Case 1

Gallery

Case 1

Attribution, Breach, Case Study, Contracts, Cyber, Defensive Methodology, Disclosure, Forensic, Hacking, Hunting, Incident Response, Laws, Reports

Case 1

Case 1

Case 1. If you like the case study, hit us up and let us know. Take care. Malware Analysis on Hybrid-Analysis. case1Download

By CompSec Direct|2022-06-15T01:30:31-04:00August 27th, 2019|Categories: Attribution, Breach, Case Study, Contracts, Cyber, Defensive Methodology, Disclosure, Forensic, Hacking, Hunting, Incident Response, Laws, Reports |Tags: case 1, case study, compsec direct, hybrid analysis, malware analysis|Comments Off on Case 1

Read More

CompSec Direct now approved Cyber-security vendor in Maryland

Gallery

CompSec Direct now approved Cyber-security vendor in Maryland

Contracts, Cyber, Defensive Methodology, Forensic, Hunting, News, Pen-testing, Social Engineering

CompSec Direct now approved Cyber-security vendor in Maryland

CompSec Direct now approved Cyber-security vendor in Maryland

CompSec Direct has been approved as a Qualified Maryland Cybersecurity Seller (QMCS) by the Department of Commerce of Maryland. This allows us to provide cybersecurity services to qualifying companies under the Buy Maryland Cybersecurity (BMC) [...]

By CompSec Direct|2022-06-15T00:32:05-04:00August 15th, 2019|Categories: Contracts, Cyber, Defensive Methodology, Forensic, Hunting, News, Pen-testing, Social Engineering |Tags: BMC, Buy Cyber Maryland, Maryland, QMCS, Ransomware Protection, SDVOSB|Comments Off on CompSec Direct now approved Cyber-security vendor in Maryland

Read More

White pages are back!: Aeronet Wireless exposes customer info over SNMP

Gallery

White pages are back!: Aeronet Wireless exposes customer info over SNMP

Disclosure, e-Discovery

White pages are back!: Aeronet Wireless exposes customer info over SNMP

White pages are back!: Aeronet Wireless exposes customer info over SNMP

Problem CompSec Direct recently became aware of an information disclosure problem affecting Aeronet Wireless customers in Puerto Rico. In short, querying Shodan.io for Aeronet Wireless and SNMP presents publicly accessible information, such as customer names, [...]

By CompSec Direct|2022-06-15T00:33:52-04:00October 12th, 2018|Categories: Disclosure, e-Discovery |Tags: Data Leak, Disclosure, shodan|Comments Off on White pages are back!: Aeronet Wireless exposes customer info over SNMP

Read More

Data Mining PDF documents; using data conversion to reduce analysis time

Gallery

Data Mining PDF documents; using data conversion to reduce analysis time

Automation, e-Discovery, Forensic, Scripts, Tesseract

Data Mining PDF documents; using data conversion to reduce analysis time

Problem A month ago, we became aware of a way to harvest legal notifications from a government web-site. Link Here The web-server allows simple requests to be crafted in order to download PDF documents related to court [...]

By CompSec Direct|2022-06-15T00:37:27-04:00May 31st, 2017|Categories: Automation, e-Discovery, Forensic, Scripts, Tesseract |Tags: automation, data conversion, data-mining, e-Discovery, pdf, Tesseract|Comments Off on Data Mining PDF documents; using data conversion to reduce analysis time

Read More

CompSec Direct’s president presents ZigBee research at local security conference at Inner Harbor

Gallery

CompSec Direct’s president presents ZigBee research at local security conference at Inner Harbor

Cyber, Demo, Laws, Reports

CompSec Direct’s president presents ZigBee research at local security conference at Inner Harbor

Our President, Jose Fernandez, presented ZigBee research at Bsides Charm 2017 in Baltimore on April 29, 2017. The presentation, called Frony Fronius: Exploring ZigBee signals from SolarCity covered IoT (Internet of Threats) findings on commercial [...]

By CompSec Direct|2022-06-15T00:45:03-04:00April 30th, 2017|Categories: Cyber, Demo, Laws, Reports |Tags: Bsides Charm 2017, Digi, Fronius, Internet of Threats, IoT, SolarCity, ZigBee|Comments Off on CompSec Direct’s president presents ZigBee research at local security conference at Inner Harbor

Read More

CompSec Direct receives media mentions as the result from incident response services offered to Hacienda of Puerto Rico

Gallery

CompSec Direct receives media mentions as the result from incident response services offered to Hacienda of Puerto Rico

Attribution, Contracts, Cyber, Defensive Methodology, Hunting, Incident Response, Reports

CompSec Direct receives media mentions as the result from incident response services offered to Hacienda of Puerto Rico

The Center of Investigative News (Centro de Periodismo Investigativo) published an excellent summary of events from the situation the department of Hacienda faced in early March of 2017. Our early involvement in this event helped [...]

By CompSec Direct|2022-06-15T00:46:16-04:00March 18th, 2017|Categories: Attribution, Contracts, Cyber, Defensive Methodology, Hunting, Incident Response, Reports |Tags: Government, incident response, Malware, Puerto Rico, Reports|Comments Off on CompSec Direct receives media mentions as the result from incident response services offered to Hacienda of Puerto Rico

Read More

CompSec Direct solicited for subject matter expertise on Incident Response for Hacienda of Puerto Rico

Gallery

CompSec Direct solicited for subject matter expertise on Incident Response for Hacienda of Puerto Rico

Attribution, Contracts, Defensive Methodology, Hunting, Incident Response, Reports

CompSec Direct solicited for subject matter expertise on Incident Response for Hacienda of Puerto Rico

CompSec Direct was asked to provide incident response services to the department of Hacienda, the Treasury department of Puerto Rico, on March 7,2017. The department of Hacienda was experiencing daily losses of approximately $20 million [...]

By CompSec Direct|2024-12-16T19:09:06-05:00March 10th, 2017|Categories: Attribution, Contracts, Defensive Methodology, Hunting, Incident Response, Reports |Tags: Government, hacienda, incident response, Puerto Rico|Comments Off on CompSec Direct solicited for subject matter expertise on Incident Response for Hacienda of Puerto Rico

Read More

CompSec Direct is awarded CATS+ Master Contract in Maryland

Gallery

CompSec Direct is awarded CATS+ Master Contract in Maryland

Contracts

CompSec Direct is awarded CATS+ Master Contract in Maryland

CompSec Direct is awarded CATS+ Master Contract in Maryland

CompSec Direct was awarded a Master contract with the state of Maryland on February, 2017. The CATS+ Master Contract lists provides the state with a list of known vendors in applicable functional areas. We solicited [...]

By CompSec Direct|2024-12-16T19:09:06-05:00February 27th, 2017|Categories: Contracts |Tags: CATS+, Contracts, DoIT, Maryland, State|Comments Off on CompSec Direct is awarded CATS+ Master Contract in Maryland

Read More

NTT Group Global Threat Intelligence Report 2016

Gallery

NTT Group Global Threat Intelligence Report 2016

Cyber, Defensive Methodology, Forensic, Reports

NTT Group Global Threat Intelligence Report 2016

NTT Group Global Threat Intelligence Report 2016

GTIR 2016 NTT Group published a great threat report for 2016. Quality publication and definitely worth while. Good for CISO’s and Info Sec pros alike. Although some of the areas in the Key Findings are [...]

By CompSec Direct|2022-06-15T00:50:38-04:00October 19th, 2016|Categories: Cyber, Defensive Methodology, Forensic, Reports |Tags: 2016, compsec direct, Intelligence, ntt group, Reports, Threat Report, Threats|Comments Off on NTT Group Global Threat Intelligence Report 2016

Read More

CompSec Direct’s president presents Shodan research at local security conference in Puerto Rico

Gallery

CompSec Direct’s president presents Shodan research at local security conference in Puerto Rico

Cyber, Demo, Pen-testing, Training

CompSec Direct’s president presents Shodan research at local security conference in Puerto Rico

CompSec Direct president, Jose Fernandez, presented an open-source intelligence gathering tool called Shodan-Runner at the Bsides PR security conference hosted on Oct 6,2016 in Puerto Rico. The tool allows users to use external CSV files [...]

By CompSec Direct|2022-06-15T00:53:53-04:00October 7th, 2016|Categories: Cyber, Demo, Pen-testing, Training |Tags: bsides pr 2016, compsec direct, osint, shodan, shodan-runner|Comments Off on CompSec Direct’s president presents Shodan research at local security conference in Puerto Rico

Read More

CompSec Direct hosts remote incident response training for local Puerto Rico students and experts

Gallery

CompSec Direct hosts remote incident response training for local Puerto Rico students and experts

Cyber, Defensive Methodology, Demo, Forensic, Hunting, Training

CompSec Direct hosts remote incident response training for local Puerto Rico students and experts

We hosted a training session on remote incident response operation on Oct 7, 2016. The course was provided “pro-bono” through @Obsidis_NGO‏, participants paid a small registration fee that covered lunch. Students were able to analyze malware [...]

By CompSec Direct|2022-06-13T18:23:30-04:00October 7th, 2016|Categories: Cyber, Defensive Methodology, Demo, Forensic, Hunting, Training |Comments Off on CompSec Direct hosts remote incident response training for local Puerto Rico students and experts

Read More

Forcepoint 2015 Threat Report

Gallery

Forcepoint 2015 Threat Report

Attribution, Cyber, Defensive Methodology, Forensic, Hacking, Hunting, Pen-testing, Reports, Tor

Forcepoint 2015 Threat Report

Forcepoint 2015 Threat Report

An excellent publication from Forcepoint that covers CnC malware, malicious insiders and attribution. Unlike other threat reports, this report covers multiple human factors that are often neglected in technical reports. In some cases, human error and predisposition [...]

By CompSec Direct|2022-06-15T00:55:26-04:00February 15th, 2016|Categories: Attribution, Cyber, Defensive Methodology, Forensic, Hacking, Hunting, Pen-testing, Reports, Tor |Comments Off on Forcepoint 2015 Threat Report

Read More

Why going after wp-config is a quick way to get banned

Gallery

Why going after wp-config is a quick way to get banned

Attribution, Defensive Methodology, Hacking, Reports, Wordpress

Why going after wp-config is a quick way to get banned

Why going after wp-config is a quick way to get banned

The first is actually more common place. The second assumes the admin that maintains WordPress leaves a backup or older version of the file readable by any visitor that happens to “guess” a filename. In [...]

By CompSec Direct|2022-06-15T00:59:14-04:00January 15th, 2016|Categories: Attribution, Defensive Methodology, Hacking, Reports, Wordpress |Comments Off on Why going after wp-config is a quick way to get banned

Read More

Security firm sued for filing “woefully inadequate” forensics report -Arstechnica

Gallery

Security firm sued for filing “woefully inadequate” forensics report -Arstechnica

Breach, Forensic, Lawsuit

Security firm sued for filing “woefully inadequate” forensics report -Arstechnica

Arstechnica's Dan Goodin has reported that Trustwave is being sued by Affinity Gaming for not eliminating malware presence after a forensic investigation had been done. Mandiant uncovered the malware during a follow up PCI forensic [...]

By CompSec Direct|2022-06-15T01:27:43-04:00January 15th, 2016|Categories: Breach, Forensic, Lawsuit |Tags: ArsTechnica, forensic investigation, Malware|Comments Off on Security firm sued for filing “woefully inadequate” forensics report -Arstechnica

Read More

Wassenaar Arrangement 2013 Plenary Agreements Implementation; Intrusion and Surveillance Items

Gallery

Wassenaar Arrangement 2013 Plenary Agreements Implementation; Intrusion and Surveillance Items

Cyber, Laws, Legislation

Wassenaar Arrangement 2013 Plenary Agreements Implementation; Intrusion and Surveillance Items

Wassenaar Arrangement 2013 Plenary Agreements Implementation; Intrusion and Surveillance Items

CompSec Direct and other individuals and companies spoke out against the 2013 Wassenaar Arrangement. We hope our petitions for further revisions are heard. We have included a copy of the document submitted to http://www.regulations.gov/#!docketDetail;D=BIS-2015-0011 Wassenaar Agreement [...]

By CompSec Direct|2022-06-13T18:34:26-04:00July 20th, 2015|Categories: Cyber, Laws, Legislation |Tags: rfc, WA 2013, wassenaar arrangement, wassennar|Comments Off on Wassenaar Arrangement 2013 Plenary Agreements Implementation; Intrusion and Surveillance Items

Read More

Stepson of Stuxnet stalked Kaspersky for months, tapped Iran nuke talks – ArsTechnica

Gallery

Stepson of Stuxnet stalked Kaspersky for months, tapped Iran nuke talks – ArsTechnica

Breach, Hacking, Reports

Stepson of Stuxnet stalked Kaspersky for months, tapped Iran nuke talks – ArsTechnica

Excellent report by Kaspersky that unmasks a breach inside their corporate infrastructure. Stepson of Stuxnet stalked Kaspersky for months, tapped Iran nuke talks

By CompSec Direct|2022-06-15T01:26:03-04:00June 13th, 2015|Categories: Breach, Hacking, Reports |Tags: Hacked, Kaspersky|Comments Off on Stepson of Stuxnet stalked Kaspersky for months, tapped Iran nuke talks – ArsTechnica

Read More

Bsides PR 2015 – Fun with Tor : How anonymity services complicate actor attribution CompSec Direct

Gallery

Bsides PR 2015 – Fun with Tor : How anonymity services complicate actor attribution CompSec Direct

Attribution, Defensive Methodology, Demo, Hacking, Tor

Bsides PR 2015 – Fun with Tor : How anonymity services complicate actor attribution CompSec Direct

Hello from Puerto Rico. Here are our slides from Jose Fernandez’s talk on Tor and attribution. We are very exited to have participated in BSides PR 2015, and look forward to speaking again in the [...]

By CompSec Direct|2022-06-13T18:35:49-04:00May 29th, 2015|Categories: Attribution, Defensive Methodology, Demo, Hacking, Tor |Tags: Bsides, Bsides PR 2015, Demo, Hacking, nmap, scanning, Tor, wpscan|Comments Off on Bsides PR 2015 – Fun with Tor : How anonymity services complicate actor attribution CompSec Direct

Read More

BSides Charm 2015 – Mass Hunting and Exploitation with PowerShell Slides CompSec Direct

Gallery

BSides Charm 2015 – Mass Hunting and Exploitation with PowerShell Slides CompSec Direct

Cyber, Defensive Methodology, Demo, Hunting, Powershell

BSides Charm 2015 – Mass Hunting and Exploitation with PowerShell Slides CompSec Direct

Hello Everyone, Here are the slides from our presentation at Bsides Charm 2015. We look forward to coming back next year for another excellent community driven event.Mass Hunting with Powershell

By CompSec Direct|2022-06-13T18:36:39-04:00April 12th, 2015|Categories: Cyber, Defensive Methodology, Demo, Hunting, Powershell |Tags: BSides Charm 2015, Cyber, Demo, Hunting, Mass Hunting, Powershell|Comments Off on BSides Charm 2015 – Mass Hunting and Exploitation with PowerShell Slides CompSec Direct

Read More

Pen-testing Guidelines posted from PCI-DSS

Gallery

Pen-testing Guidelines posted from PCI-DSS

Pen-testing, Reports

Pen-testing Guidelines posted from PCI-DSS

Pen-testing Guidelines posted from PCI-DSS

PCI-DSS recently released a revised document that covers pen-testing requirements for merchants and security providers. The document does a good job of comparing pen-testing with vulnerability assessments. If your company recently had a pen-test or [...]

By CompSec Direct|2022-06-15T01:24:07-04:00April 4th, 2015|Categories: Pen-testing, Reports |Tags: PCI, PCI-DSS, Pen-testing, Reports|Comments Off on Pen-testing Guidelines posted from PCI-DSS

Read More

Cybergeddon: Why the Internet could be the next “failed state” -ArsTechnica

Gallery

Cybergeddon: Why the Internet could be the next “failed state” -ArsTechnica

Cyber, Hacking

Cybergeddon: Why the Internet could be the next “failed state” -ArsTechnica

Excellent article by Sean Gallagher from ArsTechnica. It truly captures the essence of how our world is likely headed into an unfortunate collision with technology. http://arstechnica.com/information-technology/2015/02/fear-in-the-digital-city-why-the-internet-has-never-been-more-dangerous/1/

By CompSec Direct|2022-06-15T01:25:09-04:00February 26th, 2015|Categories: Cyber, Hacking |Tags: ArsTechnica, Cybergeddon|Comments Off on Cybergeddon: Why the Internet could be the next “failed state” -ArsTechnica

Read More

11 Signs Someone Is Lying To You – Business Insider

Gallery

11 Signs Someone Is Lying To You – Business Insider

Social Engineering

11 Signs Someone Is Lying To You – Business Insider

11 Signs Someone Is Lying To You – Business Insider

Awesome post from Business Insider’s Vivian Giang. If you are into Social Engineering, lying in person is perhaps one of the best ways to accomplish either Corporate Espionage or Penetration Tests. Here are 11 indicators [...]

By CompSec Direct|2022-06-15T01:23:08-04:00February 23rd, 2015|Categories: Social Engineering |Tags: corporate, lying, social engineering|Comments Off on 11 Signs Someone Is Lying To You – Business Insider

Read More

Subscribing to the DShield Top 20 on a Palo Alto Networks Firewall

Gallery

Subscribing to the DShield Top 20 on a Palo Alto Networks Firewall

Firewall

Subscribing to the DShield Top 20 on a Palo Alto Networks Firewall

This link by Richard Porter provides a quick link to ip’s you can easily blacklist with any iptables or netfilter firewall. Ultimately, it provides a quick list of Tor nodes, known spammers and compromised hosts [...]

By CompSec Direct|2022-06-15T01:21:25-04:00February 23rd, 2015|Categories: Firewall |Tags: DShield, firewall, networks, palo alto|Comments Off on Subscribing to the DShield Top 20 on a Palo Alto Networks Firewall

Read More

How to exploit Domain Controllers with MS14-068 / From Zero 2 Hero

Gallery

How to exploit Domain Controllers with MS14-068 / From Zero 2 Hero

Demo, Hacking

How to exploit Domain Controllers with MS14-068 / From Zero 2 Hero

How to exploit Domain Controllers with MS14-068 / From Zero 2 Hero

Hello! This is jfer from compsec direct. I would like to show you how to leverage the new Kerberos exploit against Windows domain controllers called ms14-068. This vulnerability allows a user with domain credentials to [...]

By CompSec Direct|2022-06-13T18:39:44-04:00December 7th, 2014|Categories: Demo, Hacking |Tags: Demo, Exploit, MS14-068|Comments Off on How to exploit Domain Controllers with MS14-068 / From Zero 2 Hero

Read More

CSO – Survey shows the cost of security breaches is on the rise

Gallery

CSO – Survey shows the cost of security breaches is on the rise

Breach, Hacking

CSO – Survey shows the cost of security breaches is on the rise

CSO – Survey shows the cost of security breaches is on the rise

Excellent post associating the attributed costs of security breaches over time.

By CompSec Direct|2022-06-15T01:19:50-04:00October 22nd, 2014|Categories: Breach, Hacking |Tags: breaches, cso, security, survey|Comments Off on CSO – Survey shows the cost of security breaches is on the rise

Read More

Sans- How Not To Fail at a Pen Test

Gallery

Sans- How Not To Fail at a Pen Test

AV Bypass, Hacking

Sans- How Not To Fail at a Pen Test

Sans- How Not To Fail at a Pen Test

One of the best Sans webinars I have seen in a long time. Thank you Ed and John for putting together such a comprehensive presentation. Read More

By CompSec Direct|2022-06-15T08:41:25-04:00October 7th, 2014|Categories: AV Bypass, Hacking |Comments Off on Sans- How Not To Fail at a Pen Test

Read More

IT threat evolution Q2 2014 – Kaspersky

Gallery

IT threat evolution Q2 2014 – Kaspersky

Hacking, Reports

IT threat evolution Q2 2014 – Kaspersky

IT threat evolution Q2 2014 – Kaspersky

Please take time to read this insightful publication by David Emm, Roman Unuchek, Victor Chebyshev, Maria Garnaeva and Denis Makrushin from Kaspersky Labs. The publication offers unparalleled insight and examples of current evolving threats through [...]

By CompSec Direct|2022-06-15T01:06:41-04:00September 7th, 2014|Categories: Hacking, Reports |Tags: Hacking, Malware, Reports, Threats|Comments Off on IT threat evolution Q2 2014 – Kaspersky

Read More

Ransomware going strong, despite takedown of Gameover Zeus – ArsTechnica

Gallery

Ransomware going strong, despite takedown of Gameover Zeus – ArsTechnica

Hacking

Ransomware going strong, despite takedown of Gameover Zeus – ArsTechnica

Despite numerous public takedowns, cyber criminals will continue to extort users by leveraging their own data as ransom.Click Here for Original Post

By CompSec Direct|2022-06-15T01:08:52-04:00September 7th, 2014|Categories: Hacking |Tags: Gameover, Malware, Ransomware, Zeus|Comments Off on Ransomware going strong, despite takedown of Gameover Zeus – ArsTechnica

Read More

Advanced Persistent Threat Awareness Study Results 2014 – ISACA

Gallery

Advanced Persistent Threat Awareness Study Results 2014 – ISACA

Hacking

Advanced Persistent Threat Awareness Study Results 2014 – ISACA

Advanced Persistent Threat Awareness Study Results 2014 – ISACA

According to the study by ISACA, 15% of companies are prepared, or feel prepared to handle APT’s. Download Report Here

By CompSec Direct|2022-06-15T01:02:21-04:00August 29th, 2014|Categories: Hacking |Comments Off on Advanced Persistent Threat Awareness Study Results 2014 – ISACA

Read More

Dark Reading – How to Defend Your Network from Advanced Persistent Threats (APTs)

Gallery

Dark Reading – How to Defend Your Network from Advanced Persistent Threats (APTs)

Hacking

Dark Reading – How to Defend Your Network from Advanced Persistent Threats (APTs)

Good presentation from Bit9 on using sandboxing to potentially identify APT’s. Click Here

By CompSec Direct|2022-06-15T01:09:53-04:00August 29th, 2014|Categories: Hacking |Comments Off on Dark Reading – How to Defend Your Network from Advanced Persistent Threats (APTs)

Read More

ArsTechnica – How elite hackers (almost) stole the NASDAQ

Gallery

ArsTechnica – How elite hackers (almost) stole the NASDAQ

Hacking

ArsTechnica – How elite hackers (almost) stole the NASDAQ

ArsTechnica – How elite hackers (almost) stole the NASDAQ

I recall seeing a NASDAQ trading blackout a few months ago. Although NASDAQ claimed the 4 hour blackout was the result of a high speed trading glitch, it is more probable that these incidents are [...]

By CompSec Direct|2022-06-15T01:10:24-04:00July 18th, 2014|Categories: Hacking |Tags: 0 Day, exploits, NASDAQ|Comments Off on ArsTechnica – How elite hackers (almost) stole the NASDAQ

Read More

ArsTechnica – Millions of dynamic DNS users suffer after Microsoft seizes No-IP domains

Gallery

ArsTechnica – Millions of dynamic DNS users suffer after Microsoft seizes No-IP domains

Uncategorized

ArsTechnica – Millions of dynamic DNS users suffer after Microsoft seizes No-IP domains

Microsoft seized over 22 No IP domains under the pretext that they hosted malicious activity. Is this the cost of being in the security business or have they overstepped legal barriers?

By CompSec Direct|2022-06-15T01:05:39-04:00July 2nd, 2014|Categories: Uncategorized |Comments Off on ArsTechnica – Millions of dynamic DNS users suffer after Microsoft seizes No-IP domains

Read More

ArsTechnica – We don’t need net neutrality; we need competition

Gallery

ArsTechnica – We don’t need net neutrality; we need competition

Uncategorized

ArsTechnica – We don’t need net neutrality; we need competition

ArsTechnica – We don’t need net neutrality; we need competition

Although I may not agree with current policy regarding net neutrality, this op-ed from ArsTechnica conveys an interesting view point that almost persuades one to move away from net neutrality. Unfortunately, the end of net [...]

By CompSec Direct|2022-06-15T01:04:26-04:00June 27th, 2014|Categories: Uncategorized |Tags: ArsTechnica, net neutrality|Comments Off on ArsTechnica – We don’t need net neutrality; we need competition

Read More

DFIR Tournament SANSFIRE 2014

Gallery

DFIR Tournament SANSFIRE 2014

Uncategorized

DFIR Tournament SANSFIRE 2014

DFIR Tournament SANSFIRE 2014

SANS is hosting a forensics challenge this evening that reinforces the need for improved forensic reflexes. For example, if you normally do the same actions when confronted with a task, this becomes a form of [...]

By CompSec Direct|2022-06-15T08:45:11-04:00June 26th, 2014|Categories: Uncategorized |Tags: DFIR, sans, SANSFIRE 2014|Comments Off on DFIR Tournament SANSFIRE 2014

Read More

Verizon 2014 data breach report

Gallery

Verizon 2014 data breach report

Uncategorized

Verizon 2014 data breach report

Verizon 2014 data breach report

If you are not familiar with this annual report, please take the time and review the findings from Verizon’s in-depth analysis on data breaches. http://www.verizonenterprise.com/DBIR/2014/reports/rp\_Verizon-DBIR-2014\_en\_xg.pdf

By CompSec Direct|2022-06-15T01:00:34-04:00June 26th, 2014|Categories: Uncategorized |Tags: data breach, report, verizon 2014|Comments Off on Verizon 2014 data breach report

Read More

CSD is providing PCI DSS 3.0 vulnerability scanning for clients

Gallery

CSD is providing PCI DSS 3.0 vulnerability scanning for clients

Uncategorized

CSD is providing PCI DSS 3.0 vulnerability scanning for clients

CSD is providing PCI DSS 3.0 vulnerability scanning for clients

PCI DSS 3.0 Changes Recent revisions in PCI DSS 3.0 require that merchants conduct a vulnerability assessment or penetration test against a companies IT resources for the purpose of providing quality assurance for customers. Read [...]

By CompSec Direct|2022-06-15T01:13:25-04:00January 4th, 2014|Categories: Uncategorized |Comments Off on CSD is providing PCI DSS 3.0 vulnerability scanning for clients

Read More