Ben Montour 

@benmontour@infosec.exchange
225 Followers
695 Following
594 Posts

I'm already totally tired of reading takes like this...

https://mastodon.social/@ericleamen/113435715244791649

... is there a segment of the population that didn't want to vote for a woman or a person of color? Yeah, sure, maybe.

But that segment pales in comparison to the slice of our populace who couldn't bring themselves to vote for EITHER genocidal authoritarian aristocrat because they "saw no difference" between the candidates.

Do I see a difference between them? Of course.

But I also saw this coming. Democrats who try to be Republicans will be beaten by Republicans every time. The DNC is like Charlie Brown with the football, I swear.

If you manage a team - today's a good day to not ask for much; let them take it easy. A lot is going on and some of them haven't slept well and are seriously stressed out right now.

Show some empathy; it's needed today.

The nature of sisense is they require access to their customers confidential data sources. They have direct access to JDBC connections, to SSH tunnels, and to SaaS platforms like Salesforce and many more. It also means they have tokens, credentials, certificates often upscoped. 1/2
@mattblaze Must pull out the usual meme

I need to rant for a second.

Things that make me happy πŸ˜€...

...when folks researching cognitive aspects of the investigative mindset and analyst performance reach out to me to collab.

Things that make me sad 😒...

...when folks researching this area build on my work and don't cite me, don't reach out, or otherwise ignore it when they know it exists.

I've looked at two papers and a blog post this week decrying the lack of research-backed cognitive models for DFIR investigations.

/me glares at my freely available dissertation

Seriously, though. I pioneered this research area, and it's been a lonely road. Now that others are exploring it, we're all better off collaborating and citing each other.

Similarly, if you're taking the academic portions of my work and using them to build practical tools or resources for analysts, let me know! I might be able to help or at least get the word out.

There's no sense in everyone starting from scratch when there is meaningful, peer-reviewed work to build on. The results of doing that usually muddy the waters for everyone.

And, well... it also needs to be said that many folks present case studies as best practices, and that's not how any of this works. We need to do better here.

#DFIR

Only Fans