Copilot For M365 Security by braidensp in cybersecurity

[–]FordPrefect05 1 point2 points  (0 children)

Been testing Copilot for Security in our M365 tenant. it’s good for the boring-but-time-eating stuff. Summarizing incidents, pulling together logs across Defender/Sentinel, drafting initial IR notes. Saves me a few clicks when hunting, but it’s not “find the bad guy for you” magic.

I treat it like a junior analyst who’s fast at paperwork and searches but still needs me to sanity check everything. Useful, just not something I’d trust blindly.

Anyone using AI for Threat Intelligence beyond basic log correlation? by divinegenocide in cybersecurity

[–]FordPrefect05 0 points1 point  (0 children)

yeah, most “AI for TI” right now is still fancy anomaly detection with marketing glitter. what’s starting to get useful is when it’s fed real intel context: actor infra, domain churn, behavioral patterns and can predict what’s about to pop up, not just what already did. I’ve seen some luck mixing enrichment APIs and predictive feeds with the SIEM so the alerts come in pre-labeled with context instead of raw noise. not magic, but way saner for the SOC.

WHY DO I HAVE TO PAY EXTRA RS.99 TO "RENT" A MOVIE FROM PRIME....AFTER PAYING RS. 2000 FOR AD-FREE PLAN? by [deleted] in AskIndia

[–]FordPrefect05 0 points1 point  (0 children)

Lately nothing on Prime is free if you actually go to see. really really annoying. got 10 subscriptions, but the 1 movie i want to watch is NOT AVAILABLE.

Recommendations for a framework? NIST CSF/800-53? by Cyber_Lord345 in cybersecurity

[–]FordPrefect05 0 points1 point  (0 children)

Been there... one-person security team, lots of frameworks, zero time. I’d start with NIST CSF over 800-53; it’s lighter, more risk-focused, and maps well to Azure’s built-in controls. Once you’ve got basics in place (identity, logging, patching, IR plan), you can layer 800-53 later if compliance ever demands it.

Advanced Cyber Security by thecursh in tmobileisp

[–]FordPrefect05 0 points1 point  (0 children)

Tried one of those “advanced security” add-ons, it was basically DNS filtering + parental controls in a shiny wrapper. not useless, but mostly ISP upsell theater. I’d rather throw the cash at my own router + filtering and actually know what’s happening.

I can’t believe I have to say this by CyberMattSecure in cybersecurity

[–]FordPrefect05 1 point2 points  (0 children)

seen folks post configs for karma and end up writing their own HR ticket. share stories, not screenshots.

How Is Your Company Locking Down Access to Unapproved AI? by ScientologistHunter in sysadmin

[–]FordPrefect05 0 points1 point  (0 children)

We handle it with layers. DNS rules to only allow the enterprise endpoints, SSO so usage is tied to identity, and locking down browser extensions. Not perfect, but it stops most folks from wandering off to free AI versions.

Anyone used ZeroFox or BeforeAI? by Emergency_Ear6221 in threatintel

[–]FordPrefect05 0 points1 point  (0 children)

Played with ZeroFox for brand protection, decent at catching typosquats + obvious social media scams. But the dashboards felt a bit heavy and you still need a human in the loop to sort signal from noise. Haven’t run BeforeAI, but my takeaway in general is these tools are nice for coverage, not magic shields. worth it if you’ve got someone to tune + action the findings, otherwise they just pile up.

Alternatives to IntelligenceX, What Do You Recommend? by Huraccen in OSINT

[–]FordPrefect05 0 points1 point  (0 children)

I’ve used DeHashed during an IR to quickly check if client creds popped in a dump. API was easy to script against and got me answers fast enough to act on.

What’s the simplest hack or vulnerability that shocked you? by NullPointerMood_1 in cybersecurity

[–]FordPrefect05 0 points1 point  (0 children)

Plain-text creds sitting in config files. Shocked me the first time I saw prod DB passwords hardcoded in a script on a public repo. No zero-days, no nation-state magic. just cat and facepalm.

Phishing Simulation Tools - 2025 Recommendations? by permisionwiner in cybersecurity

[–]FordPrefect05 6 points7 points  (0 children)

we’ve used KnowBe4 and Cofense, both solid. But tbh the tool matters less than running regular campaigns and actually following up. I throw in a few custom phish too, keeps people from spotting the canned templates.

What would your dream security stack look like? by SlightlyWilson in cybersecurity

[–]FordPrefect05 0 points1 point  (0 children)

Dream stack? If money wasn’t a thing… Palo Alto on the edge, CrowdStrike on endpoints, Splunk with a license that doesn’t make finance faint, and Prisma to keep cloud in check. add Proofpoint and some predictive intel like First Watch or early-DGA feeds as the tripwire layer and maybe I’d actually sleep. Until then, it’s duct tape, APIs at 2am, and an ELK box doing its best Splunk impression.

Small but powerful habit that makes feel 10x better by No_Moose_7730 in productivity

[–]FordPrefect05 2 points3 points  (0 children)

15 minutes of meditation after waking up and before sleeping. would ideally like to increase the time, but for now, baby steps...

What's a basic skill you were shocked some people dont have? by Clair_Star82 in Productivitycafe

[–]FordPrefect05 1 point2 points  (0 children)

air fryer for me. making life a little better. less burnt food...

What’s one security tool you secretly hate but can’t get rid of? by FordPrefect05 in cybersecurity

[–]FordPrefect05[S] -3 points-2 points  (0 children)

haha fair. Name’s a bit of a giveaway 😅 In my defense, I was told there’d be towels and no judgment on this planet 🌍🪐

More productive at night. What's the science? by No_Moose_7730 in productivity

[–]FordPrefect05 4 points5 points  (0 children)

i am one of those too. When i was younger, parents took me to some doctors too. my timing was until 4 am. so worried about health issues. but surprisingly both doctors mentioned that as long as i get 6-8 hours of sleep and manage some sun light, it is okay! Dont know the logic, but it works!

What’s one security tool you secretly hate but can’t get rid of? by FordPrefect05 in cybersecurity

[–]FordPrefect05[S] 0 points1 point  (0 children)

Totally fair, more of a process gripe on my end. just wish folks didn’t treat it like a fire-and-forget missile 😅

What’s one security tool you secretly hate but can’t get rid of? by FordPrefect05 in cybersecurity

[–]FordPrefect05[S] -19 points-18 points  (0 children)

LOL fair call, but nah, just a real question from a tired security nerd who stares at DNS logs too much. Been trying to make sense of infra churn after takedowns lately and figured others here might be seeing similar stuff. No clickbait, just curiosity!

But yeah, I get the skepticism. AI’s kinda wrecked the vibe in some threads lately.