New version of OpenRelik (the #DFIR workflow engine) is out. New workflow UI, support for chords (task groups with callback), MCP server and much much more. Give it a try!
Take a look at the new page for workers showcase, both official and community contributed: openrelik.org/workers/
Posts by Johan Berggren
Hey folks at #39c3, I'm around until tomorrow afternoon. If anyone wants to chat about OpenRelik or #DFIR in general. Let me know.
Achievement unlocked: Presenting at BSides Munich! ✅✨
On Nov 17th I presented my talk ”From Hours to Minutes: Automating Incident Response Triage with Open-Source Tools”. Thanks to the @bsidesmunich.bsky.social organizers, volunteers and attendees for an amazing conference!
Meatballs ftw 🇸🇪
Great stuff from Maarten and the Timesketch team!
🚀 Just launched: DetectionForge — a purpose-built platform for crafting, testing & validating @limacharlie.io detection rules.
Perform detection unit tests & multi-org backtesting + import/export IaC
🔗 Try it: detectionforge.ddi.sh
💻 GitHub: github.com/Digital-Defe... #detectionengineering #secops
Great summary of a great paper. Worth a read if you are building LLM agents systems.
Great stuff from Eric and Whitney.
Here are the slides/resources from our #SecurityFest talk on "Modernizing Incident Response Using Techniques that Scale"
Talk: www.youtube.com/live/Znl7TBF...
Yeah, looking forward to building together :)
Thank you for taking the time to visit! It was really great to finally meet in person.
Some excellent work by @craiggidney.bsky.social that reduces the number of qubits (in a quantum computer) required to break RSA by 20-fold. If you don’t have a migration plan to safe algorithms, now is the time to start one!
tested #openrelik, #hayabusa, #timesketch and #splunk4dfir using #thedfirreport recent analyst case. was a lot fun! will definitely use those tools more now 🚀
Hey #DFIR people! New #OpenRelik release just dropped. Some cool new features and a bunch of bug fixes.
A new Unfurl release is here! v2025.02 adds:
🌐 Parsing encoded/obfuscated IP addresses
🦋 Resolving #Bluesky handles to their identifiers (DIDs) and looking up their creation timestamps
🐛 Bug fixes & better bulk parsing
Blog: dfir.blog/unfurl-parse...
Code: github.com/obsidianfore...
#DFIR #OSINT
We should meet up in person.
Hayabusa - A sigma-based threat hunting and fast forensics 🔎 timeline generator for Windows event logs.
It can easily be integrated with other hunting & DFIR tools such as Velociraptor & OpenRelik.
Check it out 🔥🔥:
github.com/Yamato-Secur...
#threathunting #DFIR #sigma #cybersecurity #infosec
This is absolute insanity.
It's easy to lose sight of the fact that, from a tech perspective, we're absolutely living in the future. Our CEO and co-founder @apenwarr.ca looks at just how powerful our modern machines are — and what that means for all of us
Wooden satellite.. amazing. And built without nails or glue. Oh Japan, never change ♥️
www.theregister.com/2025/01/08/j...
Great stuff from @tomchop.me! Memory analysis and Yara support in #OpenRelik
#DFIR
Great summary of last year of databases.
The GPT-4 barrier was comprehensively broken Some of those GPT-4 models run on my laptop LLM prices crashed, thanks to competition and increased efficiency Multimodal vision is common, audio and video are starting to emerge Voice and live camera mode are science fiction come to life Prompt driven app generation is a commodity already Universal access to the best models lasted for just a few short months “Agents” still haven’t really happened yet Evals really matter Apple Intelligence is bad, Apple’s MLX library is excellent The rise of inference-scaling “reasoning” models Was the best currently available LLM trained in China for less than $6m? The environmental impact got better The environmental impact got much, much worse The year of slop Synthetic training data works great LLMs somehow got even harder to use Knowledge is incredibly unevenly distributed LLMs need better criticism Everything tagged “llms” on my blog in 2024
Here's my end-of-year review of things we learned out about LLMs in 2024 - we learned a LOT of things simonwillison.net/2024/Dec/31/...
Table of contents:
In Sweden you have to take every opportunity to surf, regardless of the weather and season.. this one is for @halvarflake.bsky.social
(In Swedish, but the picture really tells the whole story :)
www.svt.se/nyheter/loka...
Home Assistant is an amazing OSS project. I'll excited to build on the new Voice device. I will get mine in a few days, and I can finally talk to my house! Build any automation I can imagen. Custom wake word (ok computer 🖖). LLM function calling anyone...
www.youtube.com/live/ZgoaoTp...
New #OpenRelik release. Task metrics (queue length, completion, failures etc) & new Prometheus exporter. Plus, a new task dashboard for deep dives into task performance.
📝 openrelik.org/changelog/
🔗 discord.gg/hg652gktwX
#DFIR
Within software architecture, few people shaped the industry as much as @gradybooch.bsky.social. Safe to say he's a true legend.
In today's The Pragmatic Engineer Podcast episode, he shares fascinating stories, insights, observations.
Watch here: newsletter.pragmaticengineer.com/p/software-a...
When I moved back to Sweden a few years back my team snagged my password in this great tradition. The hack involved ketchup and I was very proud of everyone involved.
bughunters.google.com/blog/6355265...
🚀 New OpenRelik release
Role-based access control, folder sharing, database improvements, optimisations for file listings, chunked file uploads, bug fixes and refactoring efforts to improve stability.
📝 https://openrelik.org/changelog/
🔗 https://discord.gg/hg652gktwX
#DFIR