🗣 Rob Rosenberger Profile picture
Jan 27 18 tweets 16 min read
@thegrugq Your video promotes two #UrbanLegends at the 18:09 mark. I'll begin with the latter: that Ukrainian artillerymen are KIA over an infected phone app.

@CrowdStrike created this #myth in a hysterical report they were compelled to "update" in March 2017:
crowdstrike.com/blog/danger-cl…
@thegrugq @CrowdStrike Ukraine's ministry of defense refuted CrowdStrike's "deadly" claims. An alleged source claims CrowdStrike made errors.

Regardless how plausible you think it is, there exists NO evidence of soldiers dying over the use of malware-laden phone apps.
voanews.com/a/crowdstrike-…
@thegrugq @CrowdStrike You've fallen for one of many #UrbanLegends where no evidence exists.

Now comes the hard part.

Will you face up to getting duped?

Or will you rationalize it, perhaps by saying it will convince soldiers not to use potentially malware-laden phone apps on the battlefield?
@thegrugq @CrowdStrike You got duped by @CrowdStrike. You gave bad info to your audience. It happens to the best of us!

But please: don't leave your audience in the dark. They trust you, so you need to tell them the truth.

If you can't bear to do it, then you're pulling the wool over their eyes.
@thegrugq @CrowdStrike ...Now let's go back to the first #UrbanLegend you fell for: that hospital patients die in "cyber incidents."

You have no evidence for this claim.

Worse for you is the fact no one has pinned a death on the 2017 NHS #ransomware attack despite the hype!
@thegrugq @CrowdStrike Your hedged your hospital-deaths assertion in the video after the 18:09 mark by using @CrowdStrike's #UrbanLegend where Ukrainian soldiers get sent home in Glad bags for using an infected phone app.

Please don't use one urban legend to buttress another.
@thegrugq @CrowdStrike It's okay to assume #ransomware is so dangerous in a hospital setting that it won't surprise you if a patient died from it but the death certificate documents 'surgical complications' or, God forbid, 'Covid'.

And just to PROVE it's okay to assume it:
@thegrugq @CrowdStrike But it's NOT okay to present it as #factual in a YouTube video with 1,200+ views that you promoted on Twitter to 121,000 followers.

Worse: you hedged your factual assertion in the video at the 18:40 mark, stammering "But! Even if that *hasn't* happened..."
@thegrugq @CrowdStrike Now at THIS point you'll protest--

--that you covered yourself at the 18:14 mark after a false start where you inserted "I have been told..."

Told by sources whose expertise you didn't identify, that patients have died in hospitals due to "cyber incidents."

It fails because...
@thegrugq @CrowdStrike ...you begin at the 18:09 mark where you assert "I would argue that there has been lethality."

You made multiple attempts to convince your audience that your hearsay was fact.

Because in your humble opinion, it's just too plausible!
@thegrugq @CrowdStrike You went so far as to concoct an #excuse to explain why no evidence exists!

At the 18:21 mark: the cyber-murders of patients "hasn't been publicized & pushed because []... until it's a huge big deal, it's sorted of ignored."
@thegrugq @CrowdStrike You know, I met a man like you once who fell into exactly this trap.

Casey J. Dunlevy. A bigwig at CERT. Gave lots of speeches.

At the 2002 NebraskaCERT conference he claimed to have "verbally confirmed" the mafia used a computer to remotely kill a hospital patient.
@thegrugq @CrowdStrike It happens. All the time. To the best of us.

A prepared speech. Off-the-cuff remarks. Q&A. Or just while on a hot mic.

The old rule of thumb applies: "Everybody is stupid at least 10 minutes a day. Try to keep it down to 10, and try to do it when nobody is looking."
@thegrugq @CrowdStrike Okay, so you screwed up.

You perpetuated @CrowdStrike's sexy cyber war-porn #UrbandLegend.

You fueled a #ConspiracyTheory that "cyber incidents" kill hospital patients but governments can't really do anything right now, so "until it's a huge big deal, it's sort of ignored."
@thegrugq @CrowdStrike Hey, we all make mistakes! See below for one of mine; it stings me to this day.

Why don't you sit back for a while. Do some #NeverForget research on the names & photos of Ukrainian artillerymen who died with a cell phone in their hand.
@thegrugq @CrowdStrike Maybe do some research on #NickoSilar, the baby whose death may qualify as the first #ransomware murder.

I'm shocked you didn't mention her in your video!

(And note the fact I've offered my expertise pro bono to the doctor who delivered the baby.)
@thegrugq @CrowdStrike Take your time. Compose yourself.

Then issue a ... "correction"? "Clarification"? A straight-up "apology"?

Show your 121,000+ followers you care enough to give them the best you can offer.

I mean, it's not like your PhD dissertation is riding on it!

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with 🗣 Rob Rosenberger

🗣 Rob Rosenberger Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @vmyths

Jan 26
This paragraph implies the global cybersecurity community sometimes *fails* to galvanize the IT community to stamp out a vuln that can kill hospital patients in an operating room.

But there IS a precedent. I will don the oldest hat in cybersecurity #criticism to reveal it...
#thegrugq, who has 121K followers including the CISA Director herself, posted a video on "cyber warfare" the other day confirming cybersecurity's failure to save hospital patients' lives. Cyber MURDERS occur because IT & gov't don't yet care to stop it:
#thegrugq was forced in his video to shrug off the murderous "cases of people at hospitals who have died due to cyber incidents," recognizing that "there's not really a response that can be made to it." He went on to say "until it's a huge big deal, it's sort of ignored."
Read 4 tweets
Jan 25
Do you believe @thegrugq's claim that "there have been cases of people at hospitals who have died due to cyber incidents and it hasn't been publicized & pushed because there's not really a response that can be made to it... Until it's a huge big deal, it's sort of ignored"?
Do you believe @thegrugq's claim that a "targeting app ... used by Ukrainian artillery crews ... [contained] malware [that] was specifically sending the GPS location of those phones ... to the Russian military ... [leading to] people being killed because they were using an app"?
In your personal opinion, which government has secretly covered up the MOST patient deaths due to hospital #ransomware attacks as detailed by @thegrugq in his recent "cyber war" video?
Read 4 tweets
Jan 24
.@thegrugq
"I would argue that there has been lethality... I've been told there have been cases of people at hospitals who have died due to cyber incidents and it hasn't been publicized & pushed because there's not really a response that can be made to it"
And then -- after @thegrugq acknowledges a massive gov't conspiracy to hide the true cause of patient death(s) because it would supposedly serve no purpose to, say, improve hospital cybersecurity -- he asserts "until it's a huge big deal, it's sort of ignored."
He then immediately hedges his conspiracy theory as if he's now a voice of reason: "But even if that hasn't happened..."

@thegrugq then goes straight into a thoroughly debunked "Ukrainian artillery app" that killed many #imaginary artillerymen
Read 6 tweets
Jan 19
Okay kiddies, get your jammies on! I'm going to tell you why the FAA wouldn't let you play a Sony Walkman on an aircraft for so many years ... then suddenly they were okay with it from soon after takeoff until just before landing. First, though: *I* need an introduction
I'm a retired 3H0x1 who documented classified air operations in Iraq in 2003 for Operation IRAQI FREEDOM. A "Deployable Enlisted Historian" is a freaky USAF job because I can stop a general in his tracks during a deadly crisis to demand a briefing, e.g.:
But what's important to our little bedtime story is that I started as a 3H0x1 for the 932d Airlift Wing, a special USAF unit that flew aeromedical missions. The C-9 "Nightingale" aircraft was a 500 MPH #ambulance and we had a fleet of them!
Read 16 tweets
Jan 17
Let's talk cybersecurity.

I seldom jump on the "Luddites vs. Tech" bandwagon because I wish to remain focused on alleviating #hysteria. This is why I only railed for things e.g. #heuristics: it slashed the fearmongering.

Here, though, we see a...
warontherocks.com/2022/01/winged…
...human conflict dating back to when Paul wrote (dictated?) Romans 8:18-21.

Look, I get it: you want to save lives on the battlefield.

But that's from *your* perspective.

From an enemy's perspective, you want to improve your #KillRatio so you can conquer them...
Military leaders on ALL sides suffer an ages-old problem.

They once preferred bows & arrows over guns; then they preferred horse-drawn artillery over tanks; and now they prefer manned aircraft over drones.

"Cyber" to them is a soldier with a laser pointer guiding a JDAM...
Read 8 tweets
Jun 1, 2021
1/11
I will now fully defend @jonathanreiber's assertion.

Notice his key phrase: "a measurable economic impact on the American population."

This measurement derives from the fact #ColonialPipeline itself chose to shut down its operations "out of an abundance of caution"...
2/11
...so we can rightly say "computer security #hysteria led to a measurable economic impact on the American population."

But ... have there been UN-measured impacts?

Certainly!

I can cite my hilarious audio column from exactly 20 years ago today:
3/11
I consider it a first -- a true first! -- that we can measure a real economic impact from computer security #hysteria.

Now we have a cyber attack on the world's largest meat supplier. And it won't surprise me if @JBSCareers shuts down all operations "as a precaution."
Read 12 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Too expensive? Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us on Twitter!

:(