I saw mommy phishing Santa Claus

#HolidaySecuritySong

@Emily
I saw daddy stalking elves!
@Emily @Erased_Citizen 🎼 Santa Claus is doxing, your town…
@Emily do you think santa runs an operating system that uses ELF executables

@Rairii of course he does. He lives in Antarctica, the penguin land!

@Emily

@Emily I'm still of the opinion that Rick Astley has had a bigger impact on cyber security than all the training videos on phishing you see at work combined.
@Emily dear Santa: me leaving out cookies was not an acceptance of your cookies.
@Emily I’m just impressed the guy could navigate a 2.2 billion record flat text file database efficiently.
@redezem @Emily Physically visiting them all in one night has nothing on that
@freequaybuoy
Yeah. You can be as inefficient as you want when you can, likely, bend Time Itself.
@redezem @Emily

@Emily

Timeline says Santa should adopt CryptPad too

@Emily
timeline:

dec 13: third party contract employee discloses breach
dec 19: third party ciso is alerted to possible breach
dec 28: third party ciso convenes investigation into possible breach
jan 2: third party determines that breach occurred but has not yet determined whether client data was accessed, records out for forensics
jan 17: forensics show that client data was breached
feb 5: ciso convenes response team
feb 14: response team finishes email to affected clients
feb 15: santa organization is notified of breach via third party
feb 17: santa organization convenes investigation into third party data sharing agreements
feb 24: santa organization determines that data breach happened outside santa organization, orders third party to take point on response
mar 02: third party notifies end users

@Emily krampus smugly posting snide i-told-you-so memes all week

@Emily

We all love Santa, but he's a fricken nuclear #GDPR violation waiting to happen.

#infosec #privacy

@pseudonym @Emily

It is a mitigating factor that most of those people were already thoroughly doxxed in recent leaks.

But still.