Karstadtdetektiv

@Karstadtdetektiv@infosec.exchange
41 Followers
91 Following
523 Posts

Ich bin nicht wirklich Detektiv bei Karstadt.

I work in infosec, but enjoy all types of depression. Well not enjoy, but experience. I like music, programming, and learning. Most of all I want to do nothing.
Father, communist, chuckle bunny.

Rostock, Germany

PronounsHe/him

his 2fa's shitty, fw's weak, allows any any
there's bots in his cluster already
YAML confetti
but the dashboards stand green and steady

he's trying to revert, but bitbucket is down
all the crashloopbackoffs go so loud
he opens kubectl, but the changes won't back out

https://infosec.exchange/@i0null/114877224804277758

Hacker Memes (@i0null@infosec.exchange)

🎵 Comin' out of my page and I've been doin' runtime Gotta gotta be down, because I NOP it all. It started out with a miss, how did it end up like this? (It was only a miss) It was only a miss. 🎵

Infosec Exchange

You’ve heard of ransomware, deepfake scams, and business email compromise. But what about bread bag cybercrime awareness? 🥖

In Belgium, police have taken to printing cybersecurity tips on bakery bags. Yes, really. Forget TikTok or Instagram ads, this is crime prevention via a crusty sourdough.

The initiative targets people who aren't scrolling social media 24/7. The idea is simple: warn people about online fraud and digital scams using something they actually see every day - at low cost.

When I suggest that people will game whatever metrics we put in place, I'm often met with shocked indignation. We would never game the numbers! And yet we do.

I took my car in for service this morning and I was asked if it was ok that they split the bill across two transactions. "You're being measured on number of cars through?" I asked. The answer was obviously yes, and this way I counted as two cars.

It's not just a matter that the numbers are now wrong, we have now introduced waste into the system. There were two credit card transactions rather than one. Two receipts instead of one. There was additional time for the workers to explain why they wanted to do it this way. Overall, this was complete waste, but because they felt they were being judged on the count of cars through, it was justified.

If people think that they'll be judged based on measurements then they'll game those. The more judgement, the more the numbers will be inaccurate, and the more waste will be introduced into the overall system.

You might think that I'm opposed to measuring anything then but that's not at all true. I'm a big proponent of measuring those things we want to improve. I'm just a realist and recognize that we have to design our measurements very carefully. If we measure the wrong things, or in the wrong way, we'll drive the wrong behaviours and that's our problem to solve.

#metrics

Welche Redewendungen kennt ihr, die man benutzen kann um auszudrücken, dass man an einer Situation nichts ändern kann und das auch gar nicht wirklich will?
- Das guckt sich weg!
- Das lösen wir im Schnitt!
- Das ist nicht im Geltungsbereich!

Some closeups of my Grunling embroideries :)🌱 I`m concentrating a bit more on drawing, illustration projects and my game right now but I want to get back to this new craft soon and get T-shirt embroideries ready for you. (I`m doing these myself with an embroidery machine, these bags and pouches work well already but thin shirt fabric is more difficult)
Which one of these do you like most and which Grunling should I add?

More here:
https://www.johannaforster.com/shop

And from the WTAF dept, quite a bombshell from ProPublica today:

"Microsoft is using engineers in China to help maintain the Defense Department’s computer systems — with minimal supervision by U.S. personnel — leaving some of the nation’s most sensitive data vulnerable to hacking from its leading cyber adversary, a ProPublica investigation has found."

"The arrangement, which was critical to Microsoft winning the federal government’s cloud computing business a decade ago, relies on U.S. citizens with security clearances to oversee the work and serve as a barrier against espionage and sabotage."

"But these workers, known as “digital escorts,” often lack the technical expertise to police foreign engineers with far more advanced skills, ProPublica found. Some are former military personnel with little coding experience who are paid barely more than minimum wage for the work."

https://www.propublica.org/article/microsoft-digital-escorts-pentagon-defense-department-china-hackers?utm_source=bluesky&utm_medium=social&utm_campaign=propublica-bsky&utm_content=7-15

A Little-Known Microsoft Program Could Expose the Defense Department to Chinese Hackers

The Pentagon bans foreign citizens from accessing highly sensitive data, but Microsoft bypasses this by using engineers in China and elsewhere to remotely instruct American “escorts” who may lack expertise to identify malicious code.

ProPublica
Then they came for the sarcastic people and I was like oh great that's exactly what we need right now well done to all concerned.
What i am looking for: a digital watch like the 80s Casio ones, with similar battery life but also compatible to google find my device OR even apple find. Basically shove an airtag into a small wristwatch package. Do you know such a device? #fedihelp

Na redet noch irgendwer von Spahns Maskenskandal?

Sehr ihr, das Richterinnenmanöver hat sich gelohnt.

Methode Trump: Einfach von einem Skandal durch den nächsten ablenken, so lange bis allen die Birne schwirrt, alle Grenzen von Anstand und Demokratie geschliffen sind und keiner mehr Energie hat sich noch aufzuregen.

Läuft bei Jens.

A very “surprising pattern” that people don’t want to use fucking shit that doesn’t fucking work and depends on stealing people’s work and fucking lighting the mother-fucking planet on fire while feeding their fucking money into the greedy throats of billionaires.