I’m at Gen Con and yes, I have indeed lost my ability to converse with non infosec people.

I just brain dumped and stumbled on both Stargate and martinis and honestly I know a lot about both of those topics. It’s day one. At least it’s really quiet and people are masked.
It should NOT BE THIS DIFFICULT to talk about MSgt Siler or vermouth coherently
Then again I woke up at 3am in Boston, had lunch in my car in Chicago, and it’s now 6:20 in Indianapolis.
I’ll tell YOU about my Stargate RPG character. She is a crusty gateroom tech a few months from retirement who gets caught in one of the many invasions and has to host a very optimistic Tok’ra spy.
My drink has edible glitter. It is not a martini. I am very tired.
You can find the game here: stargatetherpg.com

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Lesley Carhart

Lesley Carhart Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @hacks4pancakes

15 Sep
If you do the MCPA thing, I'll be speaking tomorrow. linkedin.com/posts/military…
(Along with the illustrious Sam Curry from @cybereason, who I do not believe has a twitter)
If you're milcyber and are not part of MCPA and AFCEA, I do not understand your strange ways.
Read 4 tweets
13 Sep
Have all you youts seen this 90s how about hackers? It is a riot of a tongue-in-cheek X-Files spinoff, but it's been sh*tcanned because it predicted 9/11 a few months prior to the event in the pilot :(
(Which is really sad because it was a super fun show that encapsulated the silliest parts of 90s tech hacker culture with 100% camp, really well.)

There was an "s" in there somewhere, but I'm just going to leave it. Just go watch "The Lone Gunmen".
Read 11 tweets
9 Aug
This is kind of weird advice but it’s important:
Don’t let the moment you show someone they’re professionally appreciated and you’re willing to help them do awesome new stuff be at their exit interview or early retirement. Even if you assume Everything Is Fine and never check in.
Then, when they have resolved to go? It is too late. They have made the difficult decision to go from your company or volunteer org or club. They are so very rarely going to rethink that decision or even be able to.
If you’re a manager or director you need to have candid conversations about what is causing your people to not succeed. If you’re like “hey, here is a cool thing this person could help with” the time is TODAY, because tomorrow they will assume you didn’t care enough to ask.
Read 5 tweets
6 Aug
If you’re angry for no reason you’re burnt out,
If you’re sleepy for no reason you’re burnt out,
If you’re irrationally mad and your work suddenly looks bad,
Spontaneously apathetic you’re burnt out.
*This is not a clinical diagnosis, and please seek prompt and professional treatment for mental health concerns
But seriously, take a vacation, have an actual meal at a table, and reconsider your work life balance.
Read 5 tweets
31 Jul
Lot of people asking how to gain forensics skills right off the street now. I got myself into this 🤷🏻‍♀️🍸. Best way to start to learn forensics is to *do it on your own Windows computer* (preferably physical). Start with basic sysinternals tools. @markrussinovich’s books are great.
You have a handy piece of evidence to examine right in front of you, and understanding how your own activity appears in memory, registry, caches, and MFT can often be much more memorable and educational than some VM lab. Lots of great free Windows forensics tools out there.
The tools we use day to day to do memory forensics are widely free, like Volatility. Disk forensics is still kind of controlled by a few expensive software powerhouses, but just learning how your own computer stores, processes, executes is a huge educational leap forward.
Read 4 tweets
31 Jul
Hey, so I want to talk about something that riles up or disheartens a lot of jr cybersecurity people and raises questions about gatekeeping, my perspective, and why I don't think it's as catastrophic as it looks from the outside. It has to do with experience required to do IR.
There is this unwritten set of rules that are constantly bandied about by senior DFIR people, and they go something like this:

"To do IR, you need 1-2 years of experience in cybersecurity (usually SOC)"

&

"To lead IR engagements you need 1-2 years of experience in DFIR"
OK, so is this gatekeepy? If you make it a static part of your hiring process, probably. Is it a bad guideline? No, and that's not so bad.

Let's talk about what Digital Forensics and Incident Response (DFIR) entails.
Read 18 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Too expensive? Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal Become our Patreon

Thank you for your support!

Follow Us on Twitter!

:(