975 Followers
273 Following
55 Posts
Connecting hacker & cyber policy communities w/
@cyberstatecraft @iamthecavalry @Defcon @supplychainsbx @BSidesLV @hillhackers @columbiadefrag ++
twitterhttps://twitter.com/twitter
webhttps://beauwoods.com
linkedinhttps://linkedin.com/in/beauwoods
githubhttps://github.com/beauwoods

We're headed to Denver, alongside @WWHackinFest on February 10, 2026!

Submit your interest to engage with state policymakers at the first ever Hackers on the Hill Colorado. https://forms.gle/d7s9EjbFece9xMqg8

More details coming soon... #HackersOnTheHill

Hackers on the Hill - Colorado participant interest form

The Elect More Hackers organization, in collaboration with BSides Boulder, BoulderSec, and Wild West Hackin' Fest, are in the planning stages for a Hackers On The Hill event at the state capitol in Denver, on either February 9 or 10, 2026, prior to the start of WWHF. We want to know a bit about your experience and background, and why you would like to be a part of this event. Hackers On The Hill is an opportunity to meet with staffers who work with Colorado lawmakers and/or staff for committees, to answer their questions and have a friendly discussion about topics where the hacking/information security community could provide insight that is otherwise unavailable or hard to obtain. We are looking for anyone who self-identifies as "hacker" or who otherwise works, volunteers, or is a student in an information security or technology field and who has an interest in engaging with lawmakers or staffers in dialogue on technology policy. If you're open to being involved in these kinds of conversations, you're in the right place. It is important to note that this is a non-partisan event, and that for the purposes of this event, we are open to meeting with lawmakers or staffers who represent any political party for respectful conversations about, specifically, where technology intersects with policy. This is as much about listening as it is about talking. It's also possible that we may not be able to accommodate everyone who wants to engage in a small meeting, in which case we will work to schedule an alternative event that you can participate in. If there are any conflicts you anticipate with that arrangement, please let us know by emailing [email protected]. We do not market your information. Data collected through this form will only be used by the organizing committee behind this event, and will not be used for any purpose other than to coordinate Hackers On The Hill - Colorado participation. We may need to provide a list of attendees in advance to the Colorado State Patrol (CSP), who operate security for the state capitol, which the only reason we ask for your legal name that appears on a government issued photo ID. This is the first time this event will take place at a state capitol, and the first time we are organizing this event itself, so please keep an open mind and bear with us as we work through our growing pains.

Google Docs

In case you missed it, put a reminder in your calendar for Hackers on the Hill DC on January 9, 2025 (the day before Shmoocon begins).

And look for more details on related international events later this year....

Bridge the gap between cybersecurity researchers and policymakers. Details and registration links to come, watch this space.

Participants in the all-volunteer event (run by I Am The Cavalry) have briefed dozens of Congressional offices on key issues facing policymakers like security researcher rights, encryption backdoors, supply chain resilience, disrupting ransomware, and (of course) AI.

So if you’re a technical cybersecurity practitioner or researcher who wants to engage in public policy dialogs (whether you’ve had experience before or not), save the date and sign up for our email notifications at https://hackersonthehill.org

#HackersOnTheHill #Cybersecurity #CyberPolicy #Shmoocon

Hackers on the Hill | Where technical truth meets policy power

Hackers on the Hill puts hackers and policymakers in the same room to talk about cyber policy. An all-volunteer initiative from I Am The Cavalry since 2017, now global.

Hackers on the Hill
The National Cyber Strategy is finally out. https://www.whitehouse.gov/wp-content/uploads/2023/03/National-Cybersecurity-Strategy-2023.pdf Congrats to Kemba Walden and her team. It was an amazing opportunity play just a small part in the feedback process and I look forward to working together in building this out.
@beauwoods sums everything nicely in his thread over on the birdsite: https://twitter.com/beauwoods/status/1631285555106308097?s=46&t=EnrHknxLpOXHo8Zrrx3V5g

Here I come Paris! Going to the #OECD Global Forum on Digital Security for Prosperity.

I’ll be on two panels, one is

- “Building bridges between the security research and policy communities.”

And the other will be

- “Policy-making in security: Effectively working with security agencies across emerging technologies”

Both topics I care about so it should be a good conversation.

@beauwoods, Chris Painter, and many others will be there as well. Looking forward to catching up with everyone.

Exactly 10 years ago today, I first published the #PyramidOfPain. I can hardly believe it's been a whole decade. I'm so lucky that my work has resonated with the security community. Thank you all for your support!

https://bit.ly/PyramidOfPain

The Pyramid of Pain

Update 2014-01-17 I'm updating this post to include a slightly revised version of the Pyramid.  The only real change I made was that I adde...

Looks like Congress may do more this session to help improve healthcare cybersecurity. Members rarely make this much noise¹ unless they're planning something fairly large.

My top list includes ways to address hospital Ransomware,² help hospitals avoid CISA Bad Practices,³ modernize outdated IT infrastructure, and getting medical devices recalled for security issues out of hospitals.
__
¹ https://healthitsecurity.com/features/amp/how-sen-warner-aims-to-mitigate-healthcare-cybersecurity-risks-through-legislation
² https://jamanetwork.com/journals/jama-health-forum/fullarticle/2799961 (which vastly underestimated the problem)
³ https://cisa.gov/BadPractices

It was incredible working with this team to put on yet another #HackersOnTheHill! We hosted our largest group of hackers EVER (100+) to brief congressional staffers on the Hill.

Giving policy wonks time with hands-on experts creates smart, sustainable cyber policy.

Sign up to join us next year! https://lnkd.in/ehvrQxTz

@beauwoods @RoRo @winnona @HarleyGeiger @jackhcable

Hackers on the Hill | Where technical truth meets policy power

Hackers on the Hill puts hackers and policymakers in the same room to talk about cyber policy. An all-volunteer initiative from I Am The Cavalry since 2017, now global.

Hackers on the Hill

On January 19, a team of us ran the 6th #HackersOnTheHill. 100+ hackers met and briefed 20+ congressional staffers in the morning. The White House invited dozens of us to brief them afterward.

It was a massive success! Thank you to all who helped and participated.

First, thank you, @spowazek for helping make things run so smoothly this year! Building on the automation and structure that you and Jennie built last year, this year scaled up (way up) gracefully with more than 50% growth!

Thank you, @RoRo for recording the public portion of the event, printing posters and stickers, and laser etching nameplates. Lots of work. And last year, building the streaming infrastructure that made it possible to accommodate virtual and in person participation.

Thank you, @winnona for being among the eagerest of us to keep the wheels turning, even cold calling Congressional offices to make sure members involved in cybersecurity legislation had the opportunity to engage.

Thank you, Katie Trimble-Noble for helping herd us to make sure the event ran smoothly and everything was thought through! And for helping inform hackers about what staffers do.

Thank you, @HarleyGeiger for supporting the event for the past several years, both in planning and organization, as well as briefing us on current events in cyber policy on the Hill. https://youtu.be/OUspGKVWYWQ?t=32

Thank you, @jackhcable for coordinating with staffers, lining up an interview subject, and getting a space! Last year your work was critical, flexing your bureaucracy hacking skills to organize space and entrance during pretty intensely constrained conditions.

Thank you to the many Congressional staffers who value engagement with the community. Who learn from us to get better at what you do, and who turn our knowledge into action. Especially Jeff Rothblum who showed us a day in the life of a Congressional staffer. https://youtu.be/cP4fSn4vyHE?t=233

Thank you to the increasing number of security researchers who value engaging with policymakers. We've come a staggeringly long way in six years. The next six will be moreso.

Thank you for saying 'cyber' unirionically and for doing the hard thing - peopleing for good.

Thank you to the National Cyber Director, Chris Inglis, and the Federal CIO, Clare M. for bringing us to the White House for amazing discussions. And to their staff who made the process easy enough even a hacker could get our WAVES forms done. Well, most of us. ;) https://www.whitehouse.gov/oncd/briefing-room/2023/01/19/readout-of-office-of-the-national-cyber-director-meetings-with-cybersecurity-researchers/

Finally, a BIG THANK YOU to Nick Leiserson, who started it with the simple words "I wonder if some hackers would enjoy a tour of the Capitol building," and now brought us to the White House.

To the many big dreams that start with "I wonder what would happen if..." and lead us to better things.

AFAIK, this year was the largest gathering of the security researcher and public policy communities. A major milestone, built by a misfit group of altruists doing good.

If you want to participate in future years, sign up on our interest form. https://hackersonthehill.org

#cybersecurity #cyberpolicy #cybercyber #congress #whitehouse

Hackers on the Hill 6 - 2023 - Plenary Session by Harley Geiger

YouTube
Fifty hackers signed up for #HackersOnTheHill January 19, 2023 in DC. Still some room left for more to join! Sign up and/or pass the word to others who might want to join! https://hackersonthehill.org
Hackers on the Hill | Where technical truth meets policy power

Hackers on the Hill puts hackers and policymakers in the same room to talk about cyber policy. An all-volunteer initiative from I Am The Cavalry since 2017, now global.

Hackers on the Hill
This NY Times op-ed arguing against the existence of Signal reads like it was created by ChatGPT based on a prompt written by an FBI intern: https://www.nytimes.com/2022/12/28/opinion/jack-dorseys-twitter-signal-privacy.html?smid=nytcore-ios-share&referringSource=articleShare
Opinion | Jack Dorsey and the Dangers of Privacy At All Costs

The debate about dilemmas posed by the text messaging system.

The New York Times