(function(i,s,o,g,r,a,m){ i['GoogleAnalyticsObject']=r; i[r]=i[r]||function(){(i[r].q=i[r].q||[]).push(arguments)}, i[r].l=1*new Date(); a=s.createElement(o),m=s.getElementsByTagName(o)[0]; a.async=1; a.data-privacy-src=g; m.parentNode.insertBefore(a,m) })(window,document,'script','//www.google-analytics.com/analytics.js','ga'); ga('create', 'UA-132428928-1', 'auto'); ga('send', 'pageview');

Defensive Methodology

BSides PR 2019

2022-06-15T00:20:50-04:00

Our President, @jfersec, had the privilege of Keynote during BSides PR 2019. During our presentation, we discussed some hard truth's around: the way DeepFakes and "WeakFakes" are utilizedhow we are good imitators and bad innovators in Puerto Ricopast efforts associated with Accelerated Disclosures for public and private companies in Puerto Ricoflaws associated with contract negotiations with [...]

BSides PR 20192022-06-15T00:20:50-04:00

CompSec Direct now approved Cyber-security vendor in Maryland

2022-06-15T00:32:05-04:00

CompSec Direct has been approved as a Qualified Maryland Cybersecurity Seller (QMCS) by the Department of Commerce of Maryland. This allows us to provide cybersecurity services to qualifying companies under the Buy Maryland Cybersecurity (BMC) program. The program allows companies with 50 employees or less to purchase services and products from approved vendors like CompSec Direct. [...]

CompSec Direct now approved Cyber-security vendor in Maryland2022-06-15T00:32:05-04:00

Apache brute: A simple brute force deterrent for Linux

2022-06-15T00:39:43-04:00

We published a simple script to help identify and block possible brute-force attempts on a Linux web-server. The script counts the amount of “bad-actions” an ip has logged in the Apache logs and blocks the ip on port 443. This script also displays top 20 visitor information using geoiplookup (which should be installed) and performs a [...]

Apache brute: A simple brute force deterrent for Linux2022-06-15T00:39:43-04:00

CompSec Direct receives media mentions as the result from incident response services offered to Hacienda of Puerto Rico

2022-06-15T00:46:16-04:00

The Center of Investigative News (Centro de Periodismo Investigativo) published an excellent summary of events from the situation the department of Hacienda faced in early March of 2017. Our early involvement in this event helped the citizens of Puerto Rico during an already difficult economic situation. We will continue to work with the department of Hacienda [...]

CompSec Direct receives media mentions as the result from incident response services offered to Hacienda of Puerto Rico2022-06-15T00:46:16-04:00

CompSec Direct solicited for subject matter expertise on Incident Response for Hacienda of Puerto Rico

2024-12-16T19:09:06-05:00

CompSec Direct was asked to provide incident response services to the department of Hacienda, the Treasury department of Puerto Rico, on March 7,2017. The department of Hacienda was experiencing daily losses of approximately $20 million dollars a day due to the severity and impact of ransomware on the government network. CompSec Direct’s president, Jose Fernandez, led [...]

CompSec Direct solicited for subject matter expertise on Incident Response for Hacienda of Puerto Rico2024-12-16T19:09:06-05:00

NTT Group Global Threat Intelligence Report 2016

2022-06-15T00:50:38-04:00

GTIR 2016 NTT Group published a great threat report for 2016. Quality publication and definitely worth while. Good for CISO’s and Info Sec pros alike. Although some of the areas in the Key Findings are questionable given that we recently saw DDoS attacks above 1Tbs , other areas highlight recent trends that ultimately affect all of [...]

NTT Group Global Threat Intelligence Report 20162022-06-15T00:50:38-04:00

CompSec Direct hosts remote incident response training for local Puerto Rico students and experts

2022-06-13T18:23:30-04:00

We hosted a training session on remote incident response operation on Oct 7, 2016. The course was provided “pro-bono” through @Obsidis_NGO‏, participants paid a small registration fee that covered lunch. Students were able to analyze malware on remote systems in a safe and controlled environment using our RIL platform. We want to thank everyone who attended the session and [...]

CompSec Direct hosts remote incident response training for local Puerto Rico students and experts2022-06-13T18:23:30-04:00

Forcepoint 2015 Threat Report

2022-06-15T00:55:26-04:00

An excellent publication from Forcepoint that covers CnC malware, malicious insiders and attribution. Unlike other threat reports, this report covers multiple human factors that are often neglected in technical reports. In some cases, human error and predisposition to reuse malware has lead thee researchers to determine a high probability of configuration reuse which leads to easier detection of [...]

Forcepoint 2015 Threat Report2022-06-15T00:55:26-04:00
Go to Top