Posts by Raphaela Mettig
I'm not usually super active, but sure!
Your effort is greatly appreciated! π«‘
Just want to take a moment and give the @wiresharkfoundation.org a shout-out for having AWESOME documentation.
I absolutely love it when official docs include clear and concise explanations, including "hey here's this common issue, why it happens, and a few ways to work around it."
It's #OBTSv8 week!
www.youtube.com/watch?v=lWLV...
Coming up the week of October 20th: #FTSCon + TWO in-person #training opportunities!
Learn more here: volatilityfoundation.org/from-the-sou...
#dfir #memoryforensics #hardwarehacking
Memory Integrity Enforcement: A complete vision for memory safety in Apple devices
security.apple.com/blog/memory-...
Problem solving is part of research, and LLMs are pretty good at finding objective answers. But the expertise in my opinion comes with intimately understanding a problem and with how you make decisions to address those problems.
It's a tool and you knew when and how to use it; I think the problem is when students use it indiscriminately in attempts to skirt the actual exercise of thinking through a problem and, ultimately, learning.
I fully agree with this. I think there's also an important distinction to be made between using AI to help you code vs using AI to code for you. It has no context of the specific things you're trying to do, but it might help when reading through documentation or looking for examples.
Windows Notepad, the native simple text editor, now has formatting options and a Copilot button.
Look what they did to Notepad. Shut the fuck up. This is Notepad. You are not welcome here. Oh yeah "Let me use Copilot for Notepad". "I'm going to sign into my account for Notepad". What the fuck are you talking about. It's Notepad.
I saw an internet post where someone was marvelling at how expensive accessing a journal article was, and how they at least hoped that the authors were being paid well by the journal for their hard work, and oh no I have some terrible news
Cybersecurity professionals and researchers can now launch Kali Linux in a virtualized container on macOS Sequoia using Apple's new containerization framework.
BSidesNYC thanks @gleeda.bsky.social and the rest of the 0x05 Technical CFP Committee, @cyb3rkitties.bsky.social, Cesar Vargas, Jase English, Jamie Williams, Jessica Hyde, @rmettig.com, and Stephanie Aceves for volunteering their time to review talks. Many thanks for curating our programming.
The House Homeland Security cyber subcommittee is holding a hearing this morning on the changing threats to operational technology, tied to the 15-year anniversary of the Stuxnet worm: homeland.house.gov/hearing/full...
I'll be testifying tomorrow at 10am before the House Homeland Security Subcommittee on Cybersecurity and Infrastructure Protection about Stuxnet and critical infrastructure security. Also on panel will be Rob Lee (Dragos), Tatyana Bolton, and Nate Gleason
The Call For Speakers for #FTSCon closes tomorrow! Make sure to submit your talks before the deadline! This is a great opportunity to share your DFIR open source tools and investigation tales with leading experts in the field.
REMINDER: The Call for Speakers for #FTSCon is open! The deadline is July 23.
See the full details in our blog post: volatilityfoundation.org/announcing-f...
#dfir #FTSCon
If you want to share tech ideas, please don't write them on medium. I get so sad every time I see folks linking there, and then I realise I have to pander to a paywall.
BSidesNYC is on October 18, 2025. The CFP is still open. Submit a topic today! bsidesnyc.org/cfp/
What do you mean it's already July π
#LSU cyber students will teach new ways to fight malware at the worldβs largest and longest-running hacking conference @defcon.bsky.social
www.lsu.edu/blog/2025/06...
#ScholarshipFirst #WBTTW @lsu.bsky.social @lsuengineering.bsky.social @attrc.bsky.social @volexity.com @volatilityfoundation.org
π£ New OT Blog
The Mandiant OT team wrote about how attackers might target microprocessor relays that protect electric grids and their components. This blog is intended to help relay and substation automation engineers harden and defend their systems.
#OTSecurity
cloud.google.com/blog/topics/...
The BSidesNYC call for papers is still open. Submit your topic today! bsidesnyc.org
Undisputedly the best training on memory forensics. Highly technical, information-dense, and in depth. If you're a malware analyst, reverse engineer, DFIR professional, or just another sys internals nerd, I cannot recommend it enough.
The Call for Presentations for From the Source 2025 is open! Our Makers Track is aimed at developers of open source DFIR tools and the Hunters track covers the best Threat Intel research of the past year. β¨β¨
See the full details in our blog post: volatilityfoundation.org/announcing-f...
We are excited to announce FTSCon 2025 on October 20, 2025, in Arlington VA! Registration is now OPEN + we have a Call for Speakers.
Following FTSCon will be a 4-day Malware & Memory Forensics Training course with Volatility 3.
See the full details here: volatilityfoundation.org/announcing-f...
I will be showing off Volatility 3 during my talk on Wednesday afternoon at RVASec. Be sure to attend and come say hello if you will be around!
rvasec.com/rvasec-14-sp...
For those who missed it, Volatility 3 is officially out! #DFIR
Stank face: on. π₯π₯π₯
www.youtube.com/watch?v=IXif...