@elastic: Live forensics on an active supply chain compromise. Jason Pappalexis builds a full containment workflow in Elastic Sec…
Summary
Jason Pappalexis demonstrates a live forensics workflow for supply chain compromise using Elastic Security, covering detection, blast radius mapping, containment, and memory capture. This is Episode 3 of Relevance Please, streaming live on X.
View Cached Full Text
Cached at: 07/30/26, 09:50 AM
Live forensics on an active supply chain compromise.
Jason Pappalexis builds a full containment workflow in Elastic Security, starting from a cross-platform Axios attack.
Mapping the blast radius with osquery and runscript parsing. Containing it with host isolation and memory capture.
From one alert to enterprise-wide containment. Bring your questions.
Relevance Please Episode 3, tomorrow at 11AM ET / 8AM PT / 4PM BST.
Live right here on X.
Similar Articles
@0x0SojalSec: fully uncensored Cybersecurity-specialized model tuned on exploits, pentesting and Run locally on MacBook, delivers exp…
A fully uncensored cybersecurity-specialized AI model fine-tuned on exploits and pentesting data, designed to run locally on consumer hardware with multiple quantization options, offering expert offensive and defensive insights.
@ant_av7: Take a look at our latest research on DockerHub secrets exposure! This time, we focused on high-value targets and we fo…
Binarly's research on DockerHub uncovers widespread exposure of secrets and credentials that could compromise major enterprises, and shows how fine-tuned LLMs can be used for cost-effective automated triage.
@DanKornas: Security testing agents often lack security-specific workflows, reliable evidence collection, and auditability. Pentest…
PentesterFlow is an open-source terminal assistant for authorized offensive-security work that plans against scoped targets, uses pentesting tools, requests approval for sensitive actions, retains lessons across sessions, and writes evidence-backed findings. It includes built-in skills for recon and web vulnerabilities, session continuity features, local continuous learning, and Burp integration.
A revisit of remote Spectre attacks on Cloudflare Workers
This article revisits remote Spectre attacks on Cloudflare Workers, demonstrating a successful attack in production despite existing defenses. It details improvements to security mechanisms and announces the publication of a research paper on the findings.
Beyond Capability Benchmarks: Learning Operational Fingerprints of LLM Cloud Services from Production Incident Metadata
The paper introduces OpEmbed, a framework for learning operational fingerprints of LLM cloud services from production incident metadata to enhance operational forecasting and reliability management in cloud environments.