Gone Ph/fishin’

11/12/2018

Recently I’ve noticed a significant uptick in the number of phishing emails being received by my coworkers.  The content has varied in both content and language but nonetheless there’s been an uptick. How do you keep curious people from clicking on nefarious email links or attachments, especially those sent from what appear to be familiar email addresses? It’s simple, you educate them.  Ideally we’d start with educating our younglings at…

Today, just a short clip on how not to do privacy.  While comedic in nature, this video is a classic example of polite and fun social engineering. Have you ever filled out an online ‘just for fun’ survey?  You know, the ones that help you sort out your Star Wars or Harry Potter name by assigning you a character or place based on your month or day of birth?  Yeah,…

Met an Infosec Guru

08/11/2018

Met an InfoSec Guru [Last June] I was cruising through Twitter and saw a post by one of my InfoSec heroes, Jayson Street (@jaysonstreet). Turns out he was in Seattle and I was able to sit down and talk with him for a good 30 minutes at Top Pot Doughnuts before being joined by Barry Dorrans (@blowdart) These guys, both at the top of their respective fields, are straight-up inspiring…

McPayphones

07/11/2018

gallery

Welcome to McPayphone, may I take your order? Sadly there will be no more ordering of anything from these phones found outside a local McDonald’s.  Where the second box went is anyone’s guess.  Someone probably ate it.           G O D  S A V E  T H E  R E P U B L I C

Determining whether or not Google or any other service provider is wrong to watch or track you is strictly a personal matter between you and them. The outrage many people have about being tracked or watched is not necessarily directed at Google or Facebook but at other parties with whom they never agreed to share this information and who don’t have any business acquiring it. If and when you elect…

No one asked, but this is the story about how my life got flip turned upsi…no, wait.  Not that story.  This is why the blog is called Destruct Zero. I’m a security enthusiast.  Yes, it may sound weird that such a thing exists but I truly am fascinated by all things related to confidentiality, integrity, accessibility, and the resulting security of private information.  The ins-n-outs and hows-n-whys of when and…

Why Bother?

03/11/2018

Had a project, needed some stuff at Lowe’s.  Walked in the main entrance to find this: I continued in through the main doors and mentioned to the employees at the customer service desk that their server room was wide open.  My statement was met with a blank stare and a shrug.  Clearly uninterested. I found what I needed, made my [cash!] purchase and on my way out went to check…

Breached

11/06/2017

123456, 123456789, qwerty, 12345678, 11111, 1234567890, 1234567, password, 123123, 987654321, qwertyuiop, mynoob, 123321, 666666, 18awcsd2w, 7777777, 1q2w3e4r, 654321, 555555, 3rjs1la7qe, google, 1q2w3e4r5t, 123qwe, zxcvbnm, 1q223, football, princess, login, welcome, solo, admin, 121212, flower, dragon, sunshine, master, hottie, loveme, zaq1zaq1, password1, letmein…… Recognize any of these passwords?  Yeah, me too!  I’ve used one or two of them myself in the not-too-distant past and actually used the same one with multiple accounts. …