GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    Tinker ☀️ (tinker@infosec.exchange)'s status on Wednesday, 30-Apr-2025 20:38:10 JST Tinker ☀️ Tinker ☀️

    Looks like Corporate #infosec has made it's choice.

    #RSAC is filled with talks embracing AI and making it "secure".

    And they invited and encouraged the Trump regime to spread its disinformation - fully sanctioned and encouraged by the conference leadership(and by conference attendees who laughed at the regime's jokes and lies and issued no challenges or stands during the talk).

    With the ostracization of #ChrisKrebs by industry and the full embrace of Kristi Noem as a speaker, this was the moment that infosec made its bed.

    Y'all lie in it now.

    In conversation about 8 days ago from infosec.exchange permalink

    Attachments


    1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/426/662/847/298/300/original/53f8751564b95200.png
    • Kevin Beaumont and Rich Felker repeated this.
    • Embed this notice
      Tinker ☀️ (tinker@infosec.exchange)'s status on Wednesday, 30-Apr-2025 20:38:09 JST Tinker ☀️ Tinker ☀️
      in reply to

      This is damning.

      Kevin Collier, journalist from NBC News states:

      "I will say [Kristi Noem] has come out swinging, insisting her vision of CISA will improve [DHS] and falsely describing its previous work as being substantially devoted to policing misinfo.

      The crowd has been relatively into it. Tepidly bit on her laugh lines. No boos, no heckling. This is a corporate crowd, not Def Con, but I would have not been surprised to have seen some disruption."

      Source: https://bsky.app/profile/kevincollier.bsky.social/post/3lny67kekqc26

      #infosec #RSAC

      In conversation about 8 days ago permalink

      Attachments


      1. https://media.infosec.exchange/infosec.exchange/media_attachments/files/114/426/686/728/435/506/original/9240b3d773b4d23e.png
      2. No result found on File_thumbnail lookup.
        Kevin Collier (@kevincollier.bsky.social)
        from Kevin Collier (@kevincollier.bsky.social)
        The crowd has been relatively into it. Tepidly bit on her laugh lines. No boos, no heckling. This is a corporate crowd, not Def Con, but I would have not been surprised to have seen some disruption. Still a few minutes left.
      Rich Felker repeated this.
    • Embed this notice
      robert daniel pickard (rdp@notpickard.com)'s status on Wednesday, 30-Apr-2025 22:46:55 JST robert daniel pickard robert daniel pickard
      in reply to

      @tinker i don't know if defcon would react differently

      last year was so full of feds and cops giving presentations that i broke my brain and i decided i won't be going back

      i really think 2010 black hat having Michael Hayden was a turning point. I remember the room being pretty evenly split between boos and fanboys. i think the fed fanboys have gained ground at blackhat and defcon now

      In conversation about 8 days ago permalink
      Rich Felker repeated this.
    • Embed this notice
      wall-e / Daniel (wall_e@ioc.exchange)'s status on Wednesday, 30-Apr-2025 22:51:24 JST wall-e / Daniel wall-e / Daniel
      in reply to

      @tinker also highlights a problem I've had with the US infosec scene for a while now: Y'all seem much too close with your law enforcement and defense agencies.

      They are not necessarily your friends. While they might share a common goal of securing the businesses you work for, on a larger scale, they are an adversary when it comes to digital communication.
      Especially now with your current regime

      In conversation about 8 days ago permalink
    • Embed this notice
      wall-e / Daniel (wall_e@ioc.exchange)'s status on Wednesday, 30-Apr-2025 22:51:25 JST wall-e / Daniel wall-e / Daniel
      in reply to

      @tinker this ties into a thought I had recently:

      How does responsible disclosure work in a world where these systems are used by a fascist government to harm people?

      Should anyone really be helping these fucking collaborators free of charge, to make their systems more secure and less destroyable?

      In conversation about 8 days ago permalink
      Rich Felker repeated this.
    • Embed this notice
      Rich Felker (dalias@hachyderm.io)'s status on Wednesday, 30-Apr-2025 22:52:59 JST Rich Felker Rich Felker
      in reply to
      • wall-e / Daniel

      @wall_e @tinker https://hachyderm.io/@dalias/110792959111399582

      In conversation about 8 days ago permalink

      Attachments

      1. No result found on File_thumbnail lookup.
        Cassandrich (@dalias@hachyderm.io)
        from Cassandrich
        @UP8@mastodon.social @mekkaokereke There's an infosec example I love for this. Folks like to think "attacker" and "defender" are objective categories. But under any plausible objective definitions, in the case of ransomware, the defender is the party who has encrypted your data with a key you don't have, and when you try to get it back, you are the attacker. Attacker and defender are moral roles defined by who should rightfully have control of data/access, not mechanical ones.
    • Embed this notice
      Tinker ☀️ (tinker@infosec.exchange)'s status on Friday, 02-May-2025 11:40:27 JST Tinker ☀️ Tinker ☀️
      in reply to
      • Troed Sångberg

      @troed - No idea. But I hate to break it to you, management and policy is actual infosec. Tech folks who wield the tools do so at the behest and direction of the decision makers.

      In conversation about 7 days ago permalink
    • Embed this notice
      Troed Sångberg (troed@swecyb.com)'s status on Friday, 02-May-2025 11:40:30 JST Troed Sångberg Troed Sångberg
      in reply to

      @tinker Were there any actual infosec people in the crowd or just infosec-aligned managers?

      In conversation about 7 days ago permalink
      Rich Felker repeated this.
    • Embed this notice
      The 500 Hats of LambdaCalculus (lambdacalculus@masto.hackers.town)'s status on Friday, 02-May-2025 11:42:11 JST The 500 Hats of LambdaCalculus The 500 Hats of LambdaCalculus
      in reply to
      • robert daniel pickard

      @rdp @tinker DEF CON needs to be brought back to pure hacker energy and a serious #ACAB attitude.

      In conversation about 7 days ago permalink
    • Embed this notice
      feld (feld@friedcheese.us)'s status on Friday, 02-May-2025 12:55:57 JST feld feld
      in reply to
      • robert daniel pickard
      • dsp
      • The 500 Hats of LambdaCalculus
      @lambdacalculus @dsp @rdp @tinker It's been dead long before pool2girl happened, so how far back do we really have to go
      In conversation about 7 days ago permalink
    • Embed this notice
      feld (feld@friedcheese.us)'s status on Friday, 02-May-2025 13:08:29 JST feld feld
      in reply to
      • dsp
      @dsp I think most of the problem is that it's too big now. It needs to be significantly reduced in size -- maybe not even normal public ticket sales
      In conversation about 7 days ago permalink
    • Embed this notice
      dsp (dsp@social.sdf.org)'s status on Friday, 02-May-2025 13:08:30 JST dsp dsp
      in reply to
      • feld

      @feld
      I have faith in the DEFCON crew honestly. During all these years, mistakes happen(ed) for sure, but this group is, in a sense, all of us here. We can reclaim a hope for a future filled with hacking, truth and ethics.

      In conversation about 7 days ago permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.