Mick Douglas πŸ‡ΊπŸ‡¦πŸŒ» Profile picture
Aug 19, 2020 β€’ 17 tweets β€’ 4 min read β€’ Read on X
I hate that I'm going to have this little thread. Buckle up.

Yesterday I made a passing reference to the fact that I take meds for treating my ADHD.

(I hope you know how rarely I cuss)

Fuck you to those who sent me hate DMs. Seriously. You are horrible people.

1/?
I know I shouldn't feed trolls, but this has to be said.

While not perfect, I am a *damn good* tech, biz owner, instructor, and hacker.

You reducing my accomplishments -- while having so very few of your own -- is telling.

2/?
I've opened a boutique infosec consultancy. I am a certified SANS instructor. A member of the IANS faculty... and someone who's not done yet. I've got plans.

For you to say that this is all thanks to a "pill that makes me not be a retard" is about as ugly as it gets.

3/?
I am not perfect, nobody is... but to say that I've accomplished what I have due to medication for a legitimately diagnosed medical condition is woefully under informed.

Let's drop some facts.

4/?
I was diagnosed in middle school. I currently take Adderall. But it's at 5mg. According to my Dr, that's the lowest dose he'll write. I've not wanted/needed to take meds my whole life.

And... wow... do the comments show you don't understand how that drug works _at all_

5/?
I'm no neuro chemist, but my understanding is that certain stimulants help with executive functioning for folks with ADHD. It's not a magic pill that allows me to be "normal"

Yes, I'm scatter brained at times my problem is I lack the ability to control my hyper focus.

6/?
I will "lock on" to some problem and just keep on drilling into it deeper and deeper... sometimes at the detriment to other obligations. It's both a blessing and a curse. I've done HELLA cool things because of it, I've also missed the mark on other things too.

7/?
The next few tweets will be responses to some of the DMs I got... As a warning. These will be un-edited and some are ugly. It's the "well meaning" ones that spurred this btw.

8/?
"you're now going to lose..." (clients, teaching gigs, etc)

I hope not, I combat it with:
- hired a _damn_ good PM
- have a biz/personal coach
- work with mentors of mine
- and I take some meds

What more should I do? I'm aggressively owning and attacking this. Always have. 9/?
"you shouldn't rely on a pill"

I'm not. Everything online tells us that meds -- for any and all conditions -- are part of an overall treatment plan. I'm doing and sticking with the plan. I've got a team by my side. Scoreboard shows it's working.

10/?
"you just lack discipline"

LOL what? I wouldn't have the career arc I've had if I didn't have hustle, drive, raw talent that I've augmented with training and practice.

This out of hand dismissal really hurt me. I don't know you, troll. And you don't know me... at all.

11/?
"it's a made up condition"

Based on... what? Come at me with some science, we'll chat. I'd love to know more about my situation so that I can use it to my best advantages.

12/?
"you're normalizing bad behavior"

Get the hell out of here. Seriously, that troll game is weak. There's nothing wrong with looking at yourself and seeing that you need to improve and taking steps to do just that.

13/?
I've bragged up myself to help lend weight to the fact that I'm a professional having a better than average career. I'm going to keep doing the things that got me to this place. I believe I'm going to keep moving forward.

The fact that this stuff needs said... is sad.

14/?
I don't want to be some poster boy for this condition. It's only a very small part of who I am. Don't reduce me to something so one dimensional.

I am in a spot personally/professionally where I feel that I can take the heat and am taking a more vocal stand

15/?
BTW, I've not been hiding that I have ADHD from anyone. (Been very open about it on other platforms)

I hope this thread helps folks realize you can have an amazing life with ADHD. I'm loving mine. I'm about to go teach for the rest of today, so I'll be off twitter.

fin.
post script.
I'm already getting DMs and replies of support. Y'all are awesome.

Remember, there's more good folks out there than bad.

Have an awesome day everyone!

β€’ β€’ β€’

Missing some Tweet in this thread? You can try to force a refresh
γ€€

Keep Current with Mick Douglas πŸ‡ΊπŸ‡¦πŸŒ»

Mick Douglas πŸ‡ΊπŸ‡¦πŸŒ» Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @bettersafetynet

Apr 4
Do. Not. Lie. On. Your. Resume!!!

Was helping a client do a tech screening this morning.

They're looking for someone who's "an accomplished penetration tester" (from job posting)

This poser was anything but.

1
Asked some ice breaker questions, and they did OK.

But then as we got into more situational questions. The answers got vaguer... and frankly odd.

Me: How would you avoid causing issues when working on prod?
Candidate: be sure to fill in a change request before the work

huh?

2
I realized this person almost certainly was overstating what they've done. So I hit them w/ a super junior question.

me: I see you've listed metasploit as a tool you're proficient in, yes?
Candidate: oh yes, I love it!
me: what's your favorite module?
C: sorry?

oh no...
3
Read 9 tweets
Feb 23
We need to do a better job of mocking vendors who claim 100% MITRE ATT&CK coverage. Not because it’s silly (we all know there’s a near infinity of evasions and obfuscations for each tactic, right?)

No, we need to mock the 100% coverage crowd for a far more important reason…

1
(Vendors, listen up, this is free consulting for you)

Attack chains are brittle. Defenders should focus on the weakest point(s) in the attack sequence. Vendors could provide enormous value in helping clients see where to maximize defensive efforts.

2
Which sounds more realistic?

β€œIf we do a few strategic things we kneecap the attackers”

β€œWe can do all the things everywhere all at once, 365x24 forever.”

It seems like focusing our limited resources where it matters would be better.

3
Read 8 tweets
Dec 28, 2023
My "AI doesn't belong in SIEM" tweets pissed more than a few people off (based on DMs I got)

First: let me be REALLY clear. For the near future, AI shouldn't be part of any SIEM. but may help the SOC.

Let's dig in!

(all pics made with DALL-E 3 AI because LOL)

🧡1/15
Right now, the ultra majority of AIs are LLMs. Large Language Models.

The major problem is SIEM data (aka logs) isn't a large language set.

Before you flip out, you're thinking large **volume**.

Yes! There's lots of logs... but! SIEM data is highly repetitive.

2 Image
Logs are _highly_ repetitive with just a few fields that actually fluctuate. Basically, the opposite of LLM data sets.

Large language sets have a massive distribution of different types of text.

example: compare your logs to wikipedia!

They aren't equal and never will be

3 Image
Read 16 tweets
Jul 28, 2023
Buckle up... we need to chat about EDR, MDR, and XDR.

(IDK if I've kicked off a thread about this stuff... though I've participated in plenty.)

Here we go!!

1
EDR = Endpoint Detection & Response.

It is NOT a replacement for anti-virus. It is NOT a replacement for SIEM. In fact, many EDR products do better working with both!

2
EDRs just like any other defensive tool can be overcome. There's ** always ** an offensive countermeasure to them.

You need to let the EDR protect and respond to what it can, but focus attention on things tampering with the EDR.

3
Read 20 tweets
Jun 21, 2023
You *can* win at defense in cyber security.

Many orgs tell you that if an attacker lands on a system, or takes over a single account, that you've "failed"

That's simply not true.

If you believe you have to be perfect to win, buckle up... this is the thread for you!

1
First, let's talk about attacker goals. They're stealing accounts or getting on systems to do something. The goal is to act upon your data in some way. (destroy, alter, etc.)

This is an *important* distinction that many gloss over.

2
(it's baseball season so this is the analogy I'm using)
In baseball, you score a run by getting to home plate.

When attackers steal an account or take over a system, they've (only) taken a base. You still have chances to prevent that attacker from getting to home plate.

3
Read 13 tweets
Jun 19, 2023
I've shared with folks that I grew up poor.

I will forever be confused by the mental gymnastics richer folks go through to convince themselves they're not rich.

Story time:
1
This past weekend my Mrs and I were looking to buy a used sailboat. Here's the exchange

Me: it's an expensive hobby
Them: yeah, but compared to others it's quite reasonable!
Mrs: Like what?
T: IDK... owning an airplane?

2
Maybe it's a midwest thing? ("being too big for your britches" is an epic burn here.)

FWIW, this was a 1985 boat, so I don't even get why folks were acting strange about this. Most cars cost far more than this boat.

:shrug:

fin
Read 4 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us!

:(