Kudos to Coinbase for publishing this fantastic write-up on social engineering. Really would love to see more orgs normalizing their wins (because make no mistake about it, this IS a win).
https://www.coinbase.com/blog/social-engineering-a-coinbase-case-study
Our (free) AWS Canarytokens have always been popular.
Today, we released the Azure alternative on our canarytokens.org server¹
Attackers who find ‘em have to use ‘em (and reveal their presence).
Check out Pieter’s blog post at:
https://blog.thinkst.com/2023/02/canarytokens-org-welcomes-azure-login-certificate-token.html
__
¹ also free
attackerkb published their GoAnywhere analysis. No more reasons to hold back my blog post then, I wrote days ago.
https://frycos.github.io/vulns4free/2023/02/06/goanywhere-forgotten.html