RE: https://mastodon.social/@Viss/116240791835934578

they loved it.
im doing this format from now on for every tabletop i ever do.

telling them halfway through "oh no, this is real. go look at your logs. go look at your telemetry. its there"

their eyes get to be the size of dinner plates.

completely different story when you make them get out of the chair and go do stuff in meatspace.

fucking awesome, 500/10. would tabletop again.

@Viss this seems really awesome. How did you accomplish the magic trick of pivoting to a real incident?

@deepthoughts10 my contact there is the head of systems/it so i met him for a burger last week and handed off the router, gave him creds to its wlan. his team plugged it in somewhere, and hung two laptops off its wlan, then gave me creds. it was setup to phone home via vpn so i could get into it and they had something to track, then i orchestrated a bunch of 'evil shit' coming from one of the laptops.

they had to go find them physically

@deepthoughts10 so i had to design the narrative around this fictional visit from some vendor with a demo, which was inside baseball - my contact gave me enough war stories about shit they normally had to do that i was able to craft a storyline that fit the typical shit they would encounter, but then found a nice spot to ask them to go look at their real systems for this thing that up til that point was supposed to be fictional

they found 4 days worth of log data waiting for em :D