You know it’s bad when…
someone asks “when did this start?” and no one knows.
| Website | https://www.JimGuckin.com |
| Security Podcast | https://www.CyberSecurityNewsByte.com |
| Website | https://www.JimGuckin.com |
| Security Podcast | https://www.CyberSecurityNewsByte.com |
You know it’s bad when…
someone asks “when did this start?” and no one knows.
You know it’s bad when…
the logs don’t agree with each other.
You know it’s bad when…
the incident bridge suddenly gets very quiet.
From the security team’s perspective:
“The system is isolated” is more of a suggestion than a fact.
Information Security things that sound fake but aren’t:
“Evil Twin.”
Not a soap opera plot.
Just a rogue WiFi access point impersonating a legitimate network.
Every organization has a “Mike.”
The one who knows how everything works.
That’s not a strength. That’s a risk.
New article: When Security Architecture Depends on Tribal Knowledge
https://jimguckin.com/2026/03/19/when-security-architecture-depends-on-tribal-knowledge/
#CyberSecurity #SecurityArchitecture #InfoSec #SecurityLeadership
Information Security terms that sound fake but aren’t:
“Watering Hole attack.”
Which sounds like wildlife photography but actually means attackers waiting for users to visit a compromised site.
#CyberSecurity #ThreatIntel #SecurityAwareness #SecurityTermsThatSoundFake
#Pennsylvania got new license plates, and I’ve seen 3 NCC plates, and thought I was surrounded by #trekkies representing their favorite ships…only to google a few and realize it’s just NCCs turn in rotation. 😩
Information Security terms that sound fake but aren’t:
“Golden Ticket attack.”
Unfortunately it does not grant access to a chocolate factory.
It does grant access to your entire Active Directory.
#CyberSecurity #ActiveDirectory #ThreatIntel #SecurityTermsThatSoundFake
Information Security terms that sound fake but aren’t:
“Living off the Land attacks.”
Which basically means attackers using your own tools against you like a digital judo move.