Smart people who get IT. Contact us: pages.hunterstrategy.net/con… NOW HIRING: #/careers">hunterstrategy.net/#/careers

Washington, DC
In case you've missed it, we have a blog! Every week, a Hunter Strategy expert shares their tips, opinions, and advice in an article. These blog posts can help expand your knowledge and give you tools for success! Read more here: medium.com/hunter-strategy #blog #hunterstrategy #IT
2
5
HunterStrategy 🇺🇦 retweeted
8
25
283
4,089
HunterStrategy 🇺🇦 retweeted
The more things change, the more they stay the same.
1
69
A Ryuk initial access broker went by "Karl Lagerfeld" online. He's now getting 24 months in federal prison, where the dress code is extremely consistent.  #Ryuk #Ransomware #InitialAccess #CyberSecurity
1
61
Open source dependencies going stale. Shift-left security nobody funded. Government agile fighting government security posture. New episode of This Is Fine tackles secure software development with Dan Beller and Greg Vanore. Catch the episode here: f.mtr.cool/bihgsgdvxa
2
2
76
HunterStrategy 🇺🇦 retweeted
Security leaders need to explain agentic AI risk in business terms without getting lost in technical details or blocking innovation. Explore 5 key risks and how to communicate them to stakeholders. bit.ly/477UF1x
1
1
97
Cisco Secure Firewall Management Center had an unauthenticated bug allowing root access. It's already being used to drop JSP shells, run Cyclops Blink, and detonate Qilin ransomware. Feds had until Sept 12 to patch. If you're still checking this off your list, you're not early. #CyberSecurity #InfoSec #Cisco #ThreatIntel
1
1
2
779
🔥 This Is Fine | QA and Automated Testing "You don't get to be called director of quality assurance if you don't have strong opinions" about skipping tests before a prod deploy. New episode on choosing test automation tools, selling automation to skeptical customers, and testing legacy systems you inherited on printed source code (yes, really). 🎧 f.mtr.cool/ufmutuhbth #TestAutomation #QualityAssurance #GovTech
1
59
HunterStrategy 🇺🇦 retweeted
In this episode, me and Jess talk about an upcoming critical change to domains for M365 and Teams that are ironically going to disproportionately impact those with the best security the most. We conclude this is busy work that MSFT is causing. 1/3
2
5
9
5,763
HunterStrategy 🇺🇦 retweeted
Or…yah know…just implement basic O365/Teams hardening and fix the root cause? 🤷🏼‍♂️
Hackers are using passkeys as bait to steal Microsoft 365 accounts. Passkeys were supposed to replace passwords and kill phishing. How it works: The setup: Attackers research the target organization first. LinkedIn. job postings. their Microsoft tenant configuration. they know the employee's name, their team, and who their IT helpdesk is. then they call. or text. or message on Teams. they impersonate IT support. the message is urgent: your passkey, MFA, or SSO settings need an immediate update or you'll lose access to corporate systems. click this link to complete enrollment. why it works: passkeys are new. most employees have never set one up before. they don't know what a legitimate passkey enrollment looks like. the phishing kit mimics the exact system dialog they'd expect to see. the campaign began in April 2026. the groups behind it: ShinyHunters, Helix, and LAPSUS$ affiliates, the same collective responsible for some of the largest corporate breaches of the last three years. once inside they spread exfiltration over hours or days. access fewer than 10 files per session to blend with normal usage. harvest SharePoint, OneDrive, and email. then post samples on a data leak site and give you 72 hours to pay. What a legitimate IT request never does: — create urgency about losing access — send you a link via SMS to your personal phone — ask you to enter a code they give you over the phone — ask you to approve an MFA prompt you didn't initiate — ask you to do any of this right now, without giving you time to verify if any of those happen: hang up. call IT directly using a number you already have.
1
2
140
🔥 This Is Fine | Applied Cyber Threat Intelligence "It's cyber story time with the CTI team." That's what happens when threat intel isn't actionable. New episode on applied CTI, with two clients weighing in from the buyer's side on what makes intelligence worth paying for. 🎧 f.mtr.cool/6gjhbjzvgv #ThreatIntelligence #Cybersecurity #GovTech
67
HunterStrategy 🇺🇦 retweeted
Think about this from a #ZeroTrust perspective. How are you validating your firewall isn’t compromised?
In today's Breach Please, me and Jess revisit the idea of detecting threat actors hiding in network devices to evade detection. This was inspired by a report from @sygnia_labs. Real talk: how do YOU validate your network devices are free of malware?
1
2
4
352
🔥This Is Fine | Threat Modeling Techniques in Defense Cybersecurity  "How do we handle it if all of the cloud providers go down? We don't. We go home." That's how you know a threat model has found the right boundary between real risk and pure theory. New episode on STRIDE, PASTA, risk registries, and why threat modeling is still one of cybersecurity's most skipped practices. 🎧 f.mtr.cool/018e8us521 #ThreatModeling #Cybersecurity #DefenseSecurity
1
166
HunterStrategy 🇺🇦 retweeted
In today's Breach Please, we talk about the (probable) ransomware attack on Boston Scientific and then discuss ransomware response in general. Lots of learnings and hot takes from people who've lived through more ransomware responses than anyone should have to.
2
2
14
4,476
Introducing the Citrix NetScaler bug! It boasts 36 attacks in just 12 days.  Web shells are already deployed. The kicker? CISA's deadline is August 29.  What should have been a patch deadline just turned into a patch sprint. Hope your change management process likes surprises.  #cybersecurity #CISA #NetScaler
87
🔥 This Is Fine | Opensource Software Security in the DoD "As long as you're not a cloud, it's fine." That's more or less DoD's current open source policy. New episode: licensing traps, foreign ownership risk, and the wild west of software supply chain governance in the DoD. 🎧f.mtr.cool/ahpmeb4iyy #OpenSource #DoD #Cybersecurity
64
Never thought these words would be mumbled but here we are... Behold, the advanced persistent threat we should've seen coming. #cybersecurity #phishing #secops
1
105
HunterStrategy 🇺🇦 retweeted
In today's episode of Breach Please, we talk about how agents reportedly settled disputes in Anthropic's testing. TL;DR: none of the outcomes we saw seemed particularly conducive to security and we're pretty sure we've got job security going forward.
2
1
7
3,618