Could have done drugs like normal people but instead I chose InfoSec. 🙃
A bit too late for me now, but if you’re thinking of starting into #InfoSec consider this as your warning.
——
P.S THIS IS A JOKE. (Adding this because Twitter scares me)
Wow! Microsoft Recall reviews!
"⭐️⭐️⭐️⭐️⭐️, it helped our customers get more and faster" - Redline stealer
"⭐️⭐️⭐️⭐️⭐️, helped us optimize our code base. Love it!" - Formbook stealer
"⭐️⭐️⭐️⭐️⭐️, so easy to use! Required no work to get information" - Rhadamanthys stealer
PSA for Cybersecurity folk: Our co-workers are tired of being "tricked" by phishing exercises y'all, and it is making them hate us for no benefit.
I have many thoughts that won't fit in a (non-bluecheck) tweet, so you can find them here:
https://t.co/jPHuIK3llv
I think part of being a professional is taking delight in other’s earnest attempts to understand your work, especially when it’s entirely within their own knowledge framework. And reflect on how your field’s terminology is its own language that isn’t as obvious as you think.
"The WebP 0day" -- a full technical analysis the recently patched vulnerability in the WebP image library that was exploited in the wild (CVE-2023-4863). https://t.co/6yUcE9sOZa
@jxeeno Saw this on a PoS machine for the first time recently! Realised it was a randomised after it beeped at me for entering the wrong pin.
Couldn’t get more secure than randomised num pad for a PoS machine where I have to stand and find the numbers with people shoulder surfing! 🤯
Repeat after me: no amount of security awareness training will solve the social engineering problem. You might as well be relying on ancient chants and sacred crystals if this is the plan.
Thank you for coming to my TED talk...
I did my first talk! There was a lot of nervous energy going into it but in the end turned out to be a lot of fun. Thank you @BSidesMelbourne for all the support, I couldn't have asked for a better platform to do my first talk. Thank you for all the love you put into this conf!
After my talk at @BSidesMelbourne yesterday, someone suggested I should condense the timeframes of a ransomware attack into a single slide, but make it dating themed...here you go.
Credit to @CrowdStrike & @Sophos for updated dwell times.
Suggestions welcomed!
#BsidesMelb2023
Great talk by Tisha M at @BSidesMelbourne:
“Demystification via deconstruction: My experience in SOC”
Best description of process injection I’ve ever heard:
It’s like biting into a sandwich and finding vegetables.
Ain’t no room for vegetables in sandwiches!
#BSidesMelb2023
Join @type404_ on Saturday at 11:35am in her talk "Demystification via deconstruction: My experience in SOC".
She will demystify Security Operations for new analysts, show that life in a SOC is more than just a burnout factory.
https://t.co/ZtydYPoH1H
I decided to outsource my entire personal financial life to GPT-4 (via the @donotpay chat we are building).
I gave AutoGPT access to my bank, financial statements, credit report, and email.
Here’s how it’s going so far (+$217.85) and the strange ways it’s saving money. (1/n):
You know the one thing internet can never have enough of. CAT PICTURES.
Soo doing my bit to make this place a bit more sane! One cat pic a time.
https://t.co/WXL21mO6nv