Sergio Caltagirone Profile picture
May 2, 2020 3 tweets 2 min read Read on X
A common ask: why don't you update the Diamond Model paper with newer examples? No. I like to teach the earlier papers to imbue history into infosec. We're surrounded by the new and the "today" - I want to give space to what came before. #infosec #cybersecurity #ThreatIntel
It's important in #infosec to be a student of history because you will be able to scale. There may be 1.5M new threats today, but they're just variations on 3 threats from a decade ago. You can now solve the better #cybersecurity problems.
So, in my courses I don't teach the new to make it "relevant." I teach the old to expose students who likely have never read them and provide additional insight they would have lacked with only the "newest."

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Sergio Caltagirone

Sergio Caltagirone Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @cnoanalysis

Sep 30, 2020
A thread on bad analysis. When #ThreatIntel analysts want to show off their Foreign Policy and Economist subscription status after reading the Russian foreign policy Wikipedia page /n #threatintelligence #cybersecurity #infosec Image
Most analysts who are "doing attribution" aren't doing good cyber threat intelligence, they're doing poor foreign policy analysis
They neither have neither the data nor the expertise to make even a moderately confident statement on attribution
Read 12 tweets
Jun 10, 2020
False flag operations are very rare because they're risky and the blowback effects are bad. Interestingly, the risks increase the more "important" you are so the most powerful countries are less likely to conduct FF ops. /1 #infosec #cybersecurity #ThreatIntel
Traditional covert and clandestine operations are cheaper, less risky, and more likely to succeed than false flag ops. Importantly, not all attempts to redirect blame is a false flag but just considered standard covert ops. /2
False flags are also generally misunderstood and confused. For example, using Russian as an English speaker in malware is, by itself, not a false flag but rather just considered good covert practice. It doesn't attempt to place blame but just conceal the operators better. /3
Read 5 tweets
Apr 10, 2020
This is terrible. Let me tell you why. THREAD #privacy #infosec #cybersecurity #COVID19 theverge.com/2020/4/10/2121…
First, health data has ALWAYS been considered protected and sensitive. Hence, the privacy requirements and oaths physicians abide by - courts have LONG recognized this privacy.
Here, we're going to have health data records tied to a person tied to a phone tied to a location. It's literally a real-time walking health report.
Read 17 tweets
Mar 30, 2020
Yesterday made ciabatta for the first time. The bottom was slightly overcooked but flavor and texture was great. /thread Image
First, the “biga.” fermented the yeast, flour, and water for 24 hours to get a strong flavor. Image
Add more flour and yeast, let it rise another 3 hours. Image
Read 5 tweets
Dec 15, 2019
THREAD Tonight, some live tweeting making dinner. This evening comes from a little further afield from last time. No spoilers as to what it is until the end. Guesses are welcome 😃 #Cooking #Cuisine
First, a load of Pecorino Romano cheese in a bowl. Image
Roast a lot of tellicherry peppercorns Image
Read 13 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us!

:(