runZero Hour, Ep. 7: Fascinating Payloads & New Revelations in Threat Intelligence

In Episode 7 of runZero Hour, we welcome our first guest, Brianna Cluck, Security Research and Detection Engineer, from GreyNoise Labs!

Brianna shared insights on her fascinating work using honeypots to hunt and tag CVE-related traffic in the wild, flagging potential threats for defenders. She is a passionate cyber detective and enthusiastically cracked open the vault to reveal vexing, unsolved security mysteries. Tune in for a live brainstorming session to see how GreyNoise Labs and the runZero research team worked together to solve the 'x-files' mysteries that Brianna has collected in her cybersecurity travels.

The runZero research team also uses honeypots; however, instead of searching for threat activity like GreyNoise Labs, honeypots are goldmines for CAASM-related research, revealing new types of attacker techniques that can then be applied to asset discovery protocols. Learn how HD Moore sets up small honeypots to collect traffic and classify unknown packets quickly, aka 'the lazy way.'

Next, Tom Sellers takes a deep dive into his recent work probing Microsoft servers via TLS and explains how direct customer feedback can help the runZero research team develop more precise fingerprinting for improved asset discovery.

Last, but not least, we shared the most recent Rapid Response highlights. Find potentially vulnerable systems using queries in posts below; fun fact, you can use these with our free trial and Community Edition, along with our licensed Platform. Enjoy!

    Meet Our Speakers

    HD Moore

    Founder & CEO

    Rob King

    Director of Security Research

    Tom Sellers

    Principal Research Engineer

    Brianna Cluck

    Special Guest, GreyNoise Researcher

    Subscribe Now

    Get the latest news and expert insights delivered in your inbox.

    Welcome to the club! Your subscription to our newsletter is successful.


    Related Resources

    Webcasts
    Unknown Assets: A Lurking Threat to Network Security
    In this EcoCast, presented by Tod Beardsley VP of Security Research, discusses proactive strategies for defending against zero-day exploits and...
    Webcasts
    Vulnerability management is broken: what's the fix?
    HD Moore and Omdia analyst Rik Turner discuss why traditional vulnerability management is struggling in modern IT infrastructures, why CVEs don’t...
    Webcasts
    From Exposed to Empowered: Fixing Fatal Flaws in Vulnerability Management
    In this on-demand session, HD Moore joins Secon Cyber to expose the limitations of legacy vulnerability management and show why many of today’s...
    Webcasts
    runZero Hour Ep. 18: Unpacking vulnerability scoring systems with EPSS expert Jay Jacobs
    Vulnerability scoring expert Jay Jacobs joins us for an insightful session exploring how scoring systems like CVSS, EPSS, and SSVC signal risk —...

    See Results in Minutes

    See & secure your total attack surface. Even the unknowns & unmanageable.