430 Followers
230 Following
7.2K Posts
design, build, teach threat-informed information security programs and techniques. Also: boosts of interesting classes, tools, research. (they/them)
Bloghttp://dfirnotes.net
Resource linkshttp://www.dfirnotes.net/about/
Test, please disregard.

@mttaggart
It's so annoying. The study you linked has soooo many problems:

1. small sample size
2. online replication with an even smaller sample size, not included in the results for reasons unspecified
3. study questions were not published, so they cannot be reviewed
4. declaring that "cognitive surrender" is different from cognitive offloading with no formal explanation of how and why
5. does not talk about research in 2011 and 2018 regarding the "google effect" of reduced working memory when you know a search engine is available, something you would think woukd be obvious prior work to cite
6. does not do a study group of JUST chatbots taking the test to compare against the human + chatbot group
7. subjective self assessment
8. "fast," "medium" and "slow" used without definitions

and that's just from skimming it...

If you have more than a passing interest in PowerShell, I can't recommend this book enough. It goes into the fantastic whirlwind of what it took to bring PowerShell to life, and Don captured the history so incredibly well.

https://www.amazon.com/Shell-Idea-Untold-History-PowerShell/dp/B089M1FCH5

Amazon.com

sleuthcon CFP closes next week (April 17) in case anyone's submittin.
I am begging AI researchers trying to study human impact to get very rapidly better at methodology so I don't constantly read halfway through these papers only to find some ridiculous experiment design that will throw the conclusions into the air.
As someone who grew up in the Apollo era and lived and breathed all things space, I really want to be excited about this new thing.
But any time I think about it, I just hear Gil Scott-Heron saying "A rat done bit my sister Nell..."

jq is super useful, once somebody explains the basics to you. Here I am explaining the basics in a way that's applicable for all you DFIR types.

https://righteousit.com/2026/04/06/jq-for-forensics/

#JSON #DFIR #Linux

jq For Forensics

jq is a great tool for parsing JSON data. But DFIR professionals often apply jq differently from the typical examples you see written for developers.

Righteous IT

Call for Testing: Laptop Integration Testing Project

We’re expanding the Laptop Support and Usability Project and inviting the community to help test FreeBSD on real hardware.

-Which laptop works best with FreeBSD?
-Will my current laptop support the features I need?
-What configuration tweaks might be required?

Testing is automated, anonymized, and straightforward, and your feedback helps improve FreeBSD for everyone.
Learn how to participate:
https://freebsdfoundation.org/blog/call-for-testing-introducing-the-laptop-integration-testing-project/
#FreeBSD #OpenSource

Hii, I'm new here. I'm interested in #infosec #osint and maybe #redteam, are there any good accounts I can follow?

What does it take to get started in cyber in 2026? Besides the ✨ obvious ✨ which we shall not name, that is.

Join the conversation!

https://taggartinstitute.org/t/getting-started-in-2026/545

Getting started in 2026

It’s been a while since we’ve discussed beginning the cyber/IT journey here. I suspect some has changed in the last few years, but likely not the fundamentals. If you were guiding a just-graduated high school student with an interest in tech and cybersecurity, where would you have them focus their learning efforts? House Rules: Let’s take the “AI” topic as understood in this conversation. I don’t think going down that particular path is productive here. Let’s focus on areas of study beyond tha...

The Taggart Institute