mk48 :verified:

Saturdays are for the flags. 💻🚩| Founder of BIC
mk48@defcon.social

mk48 :verified:mk48@infosec.exchange
2024-07-04

12.6392° N, 8.0029° W

mk48 :verified:mk48@infosec.exchange
2023-06-13

@esh Thank you for supporting!

mk48 :verified: boosted:
2023-06-13

@mk48 at #AWS #reInforce giving a talk on building community and culture, with a focus on the "new generation", in the All Builders Welcome Lounge (Expo Hall).

Photo of Michaela speakingPhoto of Michaela speakingCase Study: Examining Successful Programs & Their Statistics BIC Mentorship Program (2023)

Graduation Rate: 87%

Reported Impact to Professional Growth: 94%

Reported Increased Skillset: 87%

Reported Relevant Content: 81%

BERSECURITY MENTORS CHS In BLACKS PROGRAM

Results:

Mentees formed bonds with mentors, used community knowledge to bridge gaps and held each other and themselves accountable.

Program Objective:

Teach target cohort about field and help gain a solid perspective, resource pair and prepare candidates for positive workforce impact (leadership, skill development & mentorship)

Organizational Objective:

Create a community that self-facilitates knowledge, resources, pathways and points of contact to strengthen members
mk48 :verified: boosted:
2023-01-11

Don't forget to purchase a ticket and/or submit a #CFP for #BSidesHBG (Harrisburg, Pennsylvania)

Saturday, March 11th in a location 5 minutes from a Waffle House and about 20 minutes from Hershey, yes, like the chocolate.

Come for my keynote talk, stay to visit nearby Chocolate World!

bsideshbg.com/ #SecurityBSides #BSides

BSides Harrisburg, Pennsylvania on Saturday, March 11th. Photo Credit: https://imayroam.com/2016/04/27/harrisburg/
mk48 :verified:mk48@infosec.exchange
2022-12-11

Looking for published papers in the Offensive Security space, is there a space specifically for published Cyber research on the web ?

mk48 :verified: boosted:
Lesley Carhart :unverified:hacks4pancakes@infosec.exchange
2022-11-23

This is the only thing really worth saving, and possibly worth reading, that I ever posted to Twitter. #infosec #cybersecurity

Recognize the early stages of infosec: "I just read the top 100 passwords’ and they're super weak!’” 
"I turned on external logging and there's al these brute force attempts!” “People still use Java!"
~ “SHODAN!"

Recognize the secondary stages of infosec: "I stayed up for 30 hours straight an it was awesome!” “Is antivirus actually useless?” “I'm gonna be the best purple teamer!” “But they promised they'd reimage last year!” “Damn, | gotta learn Python..” “But wasn't it China?”

Recogrize the tertiary stages of infosec: “NEVER MIND, they do need antivirus.* “So, attribution is hard...” “Paexec, again?!l” “Stolen creds, again?l” “How is my hard drive full of VM snapshots?” “I went to a con but | just talked to people...” "Do I drink too much?” 

Recognize the quaternary stages of infosec: “You know, forget the pen test, let’s just build an asset inventory and network map.” “I secretly want to skip this con, but I'm speaking about beer.” “I am genuinely considering opening a bar in a few years” “I probably drink too much.”
mk48 :verified:mk48@infosec.exchange
2022-11-23

Came across this video on NIST Standardized materials, the peanut butter and “domestic sludge” was wild 🤯

youtu.be/esQyYGezS7c

mk48 :verified: boosted:
2022-11-23

Elder Scrolls

mk48 :verified:mk48@infosec.exchange
2022-11-21

⚔️ About to check out the responsible red teaming course by Taggart institute #RedTeaming

taggartinstitute.org/p/respons

mk48 :verified: boosted:
2022-11-21

It's here!

Responsible Red Teaming is available TODAY at the Taggart Institute!

"Great hackers are good people."

Many red teaming courses teach the technical process of how to exploit targets. But that's usually where the conversation ends.

Responsible Red Teaming, a FREE seminar of written lectures and practical labs by @huskyhacks, continues the red teaming conversation about what it means to be safe, responsible, and pragmatic during red team engagements. The course challenges you to consider your own ethical frameworks and what you believe you owe to your clients and their data.

Then, you'll refine your operational red team skills by imbuing your tactical decisions with responsibility and ethicality. You will set up red team infrastructure and examine it with scientific rigor to ensure that it is secure. You will write emulated malware that balances its intended impact with responsibility.

Finally, you will complete the course capstone, a Choose Your Own (Pwn) Adventure featuring a live vulnerable virtual machine and a branching red team engagement story where your choices matter.

This is not a course that teaches you how to be a red teamer. It’s a course where you learn how to operate with honor.

taggartinstitute.org/p/respons

#InfoSec #CyberSecurity #RedTeam

mk48 :verified: boosted:
Very Hairy Jerryjerry@infosec.exchange
2022-11-20

Just a reminder, you can support infosec.exchange through liberapay: liberapay.com/Infosec.exchange

Thanks!

mk48 :verified: boosted:
Blacks In Cybersecurity HQ :verified:blacksincyber@infosec.exchange
2022-11-18

🎙✨ Meet Blacks In Cyber

The Changemaking Podcast with host @ChloeMessdaghi on @ITSPmagazine with Michaela Barnett @mk48 & Arthur Pryor!

How Blacks in Cyber (BiC) promotes advancement, knowledge, education & culture in Cybersecurity...đź’«

Podcast Link:
itspmagazine.com/the-changemak

#BlacksInCyber #Cybersecurity #ITSPMagazine #Podcast

mk48 :verified: boosted:
Justin Potjhpot
2022-11-16

WIRED just published my beginner's guide to Mastodon! Thank you to the 100+ people who responded to my request for tips and advice for understanding the culture here. wired.com/story/how-to-get-sta

mk48 :verified: boosted:
2022-11-16

Welcome to defcon.social!

From the first DEF CON announcement 30 years ago inviting all to attend:

We cordially invite all hackers/phreaks, techno-rats, programmers, writers, activists, lawyers, philosophers, politicians, security officials, cyberpunks and all network sysops and users to attend.

To that I would add artists, musicians, infosec, privacy professionals, and those genuinely curious about how technology and the world works.

We hope you enjoy yourselves and be kind to others.

mk48 :verified:mk48@infosec.exchange
2022-11-13

@SheHacksPurple 🥰 thanks for the warm welcome

mk48 :verified: boosted:
Jake Hildreth (acorn) :blacker_heart_outline:horse@infosec.exchange
2022-11-12

Locksmith has been updated: github.com/TrimarcJake/Locksmi

New features:
- Improved on-screen explanation of what the script is doing
- Improved output formatting
- Confirmation now required before the AD CS environment is changed
- If Locksmith changes your environment, a script is created to easily revert those changes.
- Less false positives
- If Active Directory module is not installed, Locksmith will attempt to install it for you.

Next planned updates:
- Strict Mode support
- RDP Restricted Admin support

#IAM #IdentitySecurity #CertificateServices #ActiveDirectory #ActiveDirectoryCertificateServices #ADCS #Locksmith #OpenSource #DefensiveSecurity #DefensiveSecurityTooling #Pizza

mk48 :verified: boosted:
2022-11-12

Why not sharing here some blogposts that might be helpful (hopefully) to others.

To start, here's a list of appsec resources. It needs some updating but still several real good resources in it:

johnopdenakker.com/some-useful

#infosec #appsec

mk48 :verified: boosted:
Brian Okken :python:brianokken@fosstodon.org
2022-11-12

“Being ok with sucking at something while learning” is an extremely undervalued skill.
As is “being happy for people that are better than you”.
Super important for
- learning how to code
- learning a new language
- art, music, podcasting, cooking
- really everything.
Don’t forget to teach your kids these skills.
Also, demonstrate these behaviors.
Let your kids see you being bad at something and not giving up and staying positive.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst