32 Followers
162 Following
90 Posts

Software&security architect. History nerd, travel enthusiast (slow travel and long stays!), trying to get to know as many cultures as possible, horse owner and a cat lover.

Into solar punk, sci-fi, cyberpunk, history, games, securing the internet, support for less privileged, trans rights are human rights, autonomous houses, eco friendly living, nomadism, Montessori education, reclaiming Jewish culture. Ashkenazi Jewish

Views are my own

🇪🇺🇮🇱🏴‍☠️

PronounsShe/her

I know this is EXTRAORDINARILY BAD TIMING but I am writing it to pin to my profiles.

So, I do a lot of stuff. I work in critical infrastructure. I volunteer operate career clinics. I teach and speak on the topics. I have not tooled my life to become wealthy by any means - I try to do ethical and interesting stuff.

Leaving X two years ago really hit my ability to be able to reach audiences. The hard fact is, I use the money I make on side gigs like commercial speaking to be able to do community stuff and run a free conference.

49/50 people reading this are not the target of this message. If you happen to be a security leader in an organization that hires speakers for security awareness, security education, or niche cybersecurity events - you can hire me! It's an important part of my ability to do more outreach, especially now with a massive and costly move.

If you are looking for a speaker in the next year, I have a easy to work with agent at https://www.leadingauthorities.com/speakers/lesley-carhart

My commercial prices are negotiable. I do not charge for community speaking. I cannot currently speak commercially in Australia and I am personally eating the cost of travel to the US for engagements.

Plenty of examples of my talks in bio and on YouTube!

Speaker: Lesley Carhart, Cybersecurity expert and Director of Incident Response at Dragos | LAI

Lesley Carhart is a Principal Industrial Incident Responder at the industrial cybersecurity company Dragos, Inc.

Hi Mastodon art community! I'm Anya and I draw fantasy and sci-fi illustrations. I love bright colors and spend too much time on details! Excited to find new artists to follow!

#introduction #illustration #fantasy #MastoArt

Drop what you are doing and read this incredible story from Wired, if you can. After that, come back here.

https://www.wired.com/story/edward-coristine-tesla-sexy-path-networks-doge/

It mentions that a 19 y/o man who's assisting Musk's team and who has access to sensitive government systems is Edward Coristine. Wired said Coristine, who apparently goes by the nickname "Big Balls," runs a number of companies, including one called Tesla.Sexy LLC

"Tesla.Sexy controls dozens of web domains, including at least two Russian-registered domains. One of those domains, which is still active, offers a service called Helfie, which is an AI bot for Discord servers targeting the Russian market.While the operation of a Russian website would not violate US sanctions preventing Americans doing business with Russian companies, it could potentially be a factor in a security clearance review."

The really interesting part for me is Coristine's work history at a company called Path Networks, which Wired describes generously as a company "known for hiring reformed black-hat hackers."

"At Path Network, Coristine worked as a systems engineer from April to June of 2022, according to his now-deleted LinkedIn resume. Path has at times listed as employees Eric Taylor, also known as Cosmo the God, a well-known former cybercriminal and member of the hacker group UGNazis, as well as Matthew Flannery, an Australian convicted hacker whom police allege was a member of the hacker group LulzSec. It’s unclear whether Coristine worked at Path concurrently with those hackers, and WIRED found no evidence that either Coristine or other Path employees engaged in illegal activity while at the company."

The founder of Path is a young man named Marshal Webb. I wrote about Webb back in 2016, in a story about a DDoS defense company he co-founded called BackConnect LLC. Working with Doug Madory, we determined that BackConnect had a long history of hijacking Internet address space that it didn't own.

https://krebsonsecurity.com/2016/09/ddos-mitigation-firm-has-history-of-hijacks/

Incidentally, less than 24 hours after that story ran, my site KrebsOnSecurity.com was hit with the biggest DDoS attack the Internet had ever seen at the time. That sustained attack kept my site offline for nearly 4 days.

https://krebsonsecurity.com/2016/09/krebsonsecurity-hit-with-record-ddos/

Here's the real story behind why Coristine only worked at Path for a few months. He was fired after Webb accused him of making it known that one of Path's employees was Curtis Gervais, a serial swatter from Canada who was convicted of perpetrating dozens of swattings and bomb threats -- including at least two attempts on our home in 2014. [BTW the aforementioned Eric Taylor was convicted of a separate (successful) swatting against our home in 2013.

https://krebsonsecurity.com/2017/09/canadian-man-gets-9-months-detention-for-serial-swattings-bomb-threats/

https://krebsonsecurity.com/2017/02/men-who-sent-swat-team-heroin-to-my-home-sentenced/

In the screenshot here, we can see Webb replying to a message from Gervais stating that "Edward has been terminated for leaking internal information to the competitors."

Wired cited experts saying it's unlikely Coristine could have passed a security clearance needed to view the sensitive government information he now has access to.

Want to learn more about Path? Check out the website https://pathtruths.com/

DOGE Teen Owns ‘Tesla.Sexy LLC’ and Worked at Startup That Has Hired Convicted Hackers

Experts question whether Edward Coristine, a DOGE staffer who has gone by “Big Balls” online, would pass the background check typically required for access to sensitive US government systems.

WIRED

I almost forgot this detail about about the other Path employee, Eric Taylor: He was involved in a website called Exposed[.]su, which hard doxed a ton of celebrities and people working in top government jobs, including the FBI director, the First Lady, and others.

Taylor was part of a crew that would alert TMZ when they were about to dox and then swat a celebrity, so that cameras could be on the scene when the police arrived in force.

https://krebsonsecurity.com/2013/03/credit-reports-sold-for-cheap-in-the-underweb/

https://krebsonsecurity.com/2013/04/swatting-incidents-tied-to-id-theft-sites/

Credit Reports Sold for Cheap in the Underweb – Krebs on Security

Remember EU Commissioner's Breton comment about shutting down social media during 'public unrest' events?

This is real.

I checked it in Digital Services Act (and validated through other laws, EU and international). Yes, Digital Services Act can be used to legally shut down a social network or any other internet service. Including potentially for a long time.

Far-right Twitter influencers first on Elon Musk’s monetization scheme

The first beneficiaries appear to be high-profile influencers like Andrew Tate, DC Draino, Ian Miles Cheong, Benny Johnson and Ashley St. Clair.

The Washington Post

French Assembly passes bill allowing police to remotely activate phone cameras and microphones for surveillance | Engadget

https://www.engadget.com/french-assembly-passes-bill-allowing-police-to-remotely-activate-phone-cameras-and-microphones-for-surveillance-210539401.html

Engadget is part of the Yahoo family of brands

I would prefer it if Elon Musk was destroying his site during the work week. This isn't the first time.
@robpike I still have some appliances without network connections that work quite well. But once a device can talk to its neighbors it loses interest in being an appliance, acquires delusions of grandeur, and goes attention seeking. It's the same effect social media has on ordinary, previously-effective people, only for machines.

The Joint Fleet Maintenance Manual (JFMM) is one of those documents (N.B., the JFMM is ~a linear meter bound) I always wanted to write a keynote around. It’s the thing that makes my brother working in an underwater metal tube kitted out with all manner of things that go boom, powered by a nuclear reactor that probably fits in your pantry… actually fine.

It’s not that nothing ever goes wrong – it does – but nuclear navy give a masterclass in safeguarding human life.¹
__
¹ https://www.navsea.navy.mil/Home/SUBMEPP/Products/JFMM/

SUBMEPP: JFMM