CVE-2024-3400: PAN-OS Command Injection Vulnerability in GlobalProtect Gateway. Learn More

CVE-2024-3400: PAN-OS Command Injection Vulnerability in GlobalProtect Gateway. Learn More

Services
Capture
Managed Detection & Response

Eliminate active threats with 24/7 threat detection, investigation, and response.

twi-managed-portal-color
Co-Managed SOC (SIEM)

Maximize your SIEM investment, stop alert fatigue, and enhance your team with hybrid security operations support.

twi-briefcase-color-svg
Advisory & Diagnostics

Advance your cybersecurity program and get expert guidance where you need it most.

tw-laptop-data
Penetration Testing

Test your physical locations and IT infrastructure to shore up weaknesses before exploitation.

twi-database-color-svg
Database Security

Prevent unauthorized access and exceed compliance requirements.

twi-email-color-svg
Email Security

Stop email threats others miss and secure your organization against the #1 ransomware attack vector.

tw-officer
Digital Forensics & Incident Response

Prepare for the inevitable with 24/7 global breach response in-region and available on-site.

tw-network
Firewall & Technology Management

Mitigate risk of a cyberattack with 24/7 incident and health monitoring and the latest threat intelligence.

Solutions
BY TOPIC
Offensive Security
Solutions to maximize your security ROI
Microsoft Exchange Server Attacks
Stay protected against emerging threats
Rapidly Secure New Environments
Security for rapid response situations
Securing the Cloud
Safely navigate and stay protected
Securing the IoT Landscape
Test, monitor and secure network objects
Why Trustwave
About Us
Awards and Accolades
Trustwave SpiderLabs Team
Trustwave Fusion Security Operations Platform
Trustwave Security Colony
Partners
Technology Alliance Partners
Key alliances who align and support our ecosystem of security offerings
Trustwave PartnerOne Program
Join forces with Trustwave to protect against the most advance cybersecurity threats
SpiderLabs Blog

Poems from The Palms

SpiderLabs gathered for its annual meeting in Las Vegas recently. Though no poet laureate as people don't generally pay for poetry until the author is decomposing, I would like to share the following which was inspired during the event and that I hope paints a picture of the influence of technology and insecurity upon the times we live in. Though the fabric of reality is unchanging and immutable, our malleable perceptions are under constant flux from influences both within and without which, in turn, change our individual realities as they are buffeted by the march of progress.

The clock struck one all right,
Whilst on a circuit some digital JavaScript based countdowns expired,
And SpiderLabs appeared in its flesh from threads of a flight,
Some closer to home and some others incredibly tired.

I'm glad to see that so called "actual reality" has a place,
Beyond keeping our bodies encased as a jack into virtual hacker space.
One zero one one zero one one,
No more; photonic kinetics are the reason for some:
See one another into the light and discover a brotherhood -
Spiders are Fun.

What's the rest of the reasons we are all near,
Beyond face recognition and bars and the beer,
It's not for the money that much is clear -
It's fairly expensive to send us all here.
And WebEx speaks PowerPoint just as sincere.

Changing rhythm deliberately consciously,
Just like the sea of insecurity,
Choppy and awash,
Making our living from a chorus of "You managed that? Gosh",
This client perplexity rhymes with complexity;
Can you repeat that again whilst you're sitting next to me?

Some of this stuff is for rules and the ticks;
This arm is 11.3 and this other there's for 6.6
(Of the PCI for the newcomers for whom that passed them by),
But that isn't all I espy -
The President (Obama that is) declared1 this very July in the Wall Street Journal,
"We need some comprehensive legislation,
To prevent a future where hacker's cause a financial crisis,
Or cripple the core of this great nation"
Seems like the bug's in the Kernel to me,
What are we gonna do about it, well...

Henderson has framed his fame,
Up in the air hugging scotch next to Jack B;
Percoco is on the TV whilst Stevey O is on the front page of
Black Hat - that's just three - but looks to me like we're more than eighty.

Jeez

A group of people don't have to share intelligence to amass en masse,
They can be obsessed with a singularity - part of a picture and by its own, crass,
And so crowded similar to a dumb moving boulder,
A smashing great juggernaut shoulder to shoulder.
We try to break free individually as we get older,
As violence and anger feels increasingly colder.
There is new violence now in a new age -
A violence of counterintuitive functionality,
That necessitates a hacker space of minds that can keep apace,
Of this accumulative information race.

iPhone iCrazy,
Declared News Week this week,
We're all pushing up the daisies of our prior sanity,
Checking devices these Internet vices
Changed the state of our brains to psychosis apparently.

Now Stuxnet and Flame knock at the door,
Nation states refrain to claim they might be to blame,
I think the militaries boot's in the game.
Microsoft apologies for boobs in its code,
Siemens releases a patch,
People are tweeting,
Our conscious attention on substance depleting,
Replaced with a database of what people like,
Teenagers texting dependant on phones
Instead of cycling on bikes and talking at home.

Are y'all still with me?
Make no mistake - the day may come for our armed protection,
Something serious is at stake.
In the ever-increasing connectivity,
Space is less on our minds than it used to be.
It isn't only for the money we're all here;
This is an army and we're soon the soldiers on the front line:
A new beginning where light sabres are real packets of matter
Forged in this furnace of errors,
Plasters piercing our failed comprehension:
All of a sudden we have their attention

Help us! We cannot go back to paper and safes;
Your electron copier fired its contents literally into outer space.
Integrity's damaged through duplication,
The secrets of the nation are every which where,
What's in YOUR wallet that you can share?
RFID got the better of thee?
Come have a sip of this remedy -
They call it "Security" we call it "Work",
That's this years' two pence,
Just functional quirks.

July 26th-29th, 2012.

1 The words of the President were interpreted with poetic license and not quoted verbatim.

PoemsatPalms-SpiderLabs2012

Latest SpiderLabs Blogs

EDR – The Multi-Tool of Security Defenses

This is Part 8 in my ongoing project to cover 30 cybersecurity topics in 30 weekly blog posts. The full series can be found here.

Read More

The Invisible Battleground: Essentials of EASM

Know your enemy – inside and out. External Attack Surface Management tools are an effective way to understand externally facing threats and help plan cyber defenses accordingly. Let’s discuss what...

Read More

Fake Dialog Boxes to Make Malware More Convincing

Let’s explore how SpiderLabs created and incorporated user prompts, specifically Windows dialog boxes into its malware loader to make it more convincing to phishing targets during a Red Team...

Read More