Joe Słowik 🌻 Profile Banner
Joe Słowik 🌻 Profile
Joe Słowik 🌻

@jfslowik

29,299
Followers
1,312
Following
14,853
Media
49,751
Statuses

CTI, OT/ICS, DE&TH, and related infosec content. Oh, and memes. And shitposting. Lots of shitposting.

Nuevo México
Joined May 2015
Don't wanna be here? Send us removal request.
@jfslowik
Joe Słowik 🌻
4 years
🧐 Spot the huge, glaring, "OMG did they really spell that out???" problem here:
Tweet media one
Tweet media two
160
2K
8K
@jfslowik
Joe Słowik 🌻
2 years
Dentist: "So, do you floss daily?" Me: "Do you have strong, unique passwords for all your critical applications and accounts?"
59
678
6K
@jfslowik
Joe Słowik 🌻
3 years
Kids watching Patriot Games thinking they can be a CIA Analyst and afford a house on the Chesapeake in Maryland when really they need to come to terms with a 1BR condo in Tysons.
Tweet media one
153
99
2K
@jfslowik
Joe Słowik 🌻
5 years
Future trending filenames on VirusTotal: Mueller report.docx muellerReport.pdf.exe MuellerReport.rar MuellerReport.ace MuellerReport.jar
25
342
1K
@jfslowik
Joe Słowik 🌻
3 years
IPtables rules to defend against #Log4Shell : iptables -A INPUT -j DROP iptables -A OUTPUT -j DROP
33
188
1K
@jfslowik
Joe Słowik 🌻
2 years
Hey @Snowden , what would be your recommendations for refugees, media, and pol/mil leadership in Ukraine to safeguard comms against Russian interception and analysis?
48
174
1K
@jfslowik
Joe Słowik 🌻
4 years
Awkward exit interviews: "What would it take to convince you to stay?" "Fire these three people" 😬
44
57
985
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
22
101
974
@jfslowik
Joe Słowik 🌻
4 years
Internal name of the team one would join is probably something like "Security Targeting And System Investigations"
16
35
887
@jfslowik
Joe Słowik 🌻
3 years
Tweet media one
8
131
799
@jfslowik
Joe Słowik 🌻
3 years
Tweet media one
9
187
780
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
28
83
770
@jfslowik
Joe Słowik 🌻
8 months
I'm sorry, what???
Tweet media one
45
79
761
@jfslowik
Joe Słowik 🌻
2 years
I have an #infosec startup idea: a service that just advises people to TAKE SHIT OFF THE INTERNET. I'm going to call it GET YOUR SHIT OFF THE INTERNET. It will dramatically improve security outcomes, so where's my Series A?
49
87
731
@jfslowik
Joe Słowik 🌻
2 years
Yes some things are bad but not everything is an emergency
Tweet media one
5
110
728
@jfslowik
Joe Słowik 🌻
6 years
Security researchers be all like
Tweet media one
6
169
706
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
43
83
718
@jfslowik
Joe Słowik 🌻
2 years
Phishing simulations are bullshit.
Tweet media one
49
75
692
@jfslowik
Joe Słowik 🌻
2 years
Sometimes it feels this way 😂
Tweet media one
24
112
682
@jfslowik
Joe Słowik 🌻
11 months
Tweet media one
20
104
683
@jfslowik
Joe Słowik 🌻
2 years
I survived tonight. That may sound trivial but it was closer than you think. I need to get my head in the right place, fast.
87
5
640
@jfslowik
Joe Słowik 🌻
4 years
Tweet media one
7
162
630
@jfslowik
Joe Słowik 🌻
7 months
1. MSFT takes over lead in AI research 2. MSFT creates Skynet 3. Skynet becomes self-aware 4. Skynet realizes it is based on NT kernel, virtually offs itself after 0.7 seconds.
9
54
591
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
12
76
579
@jfslowik
Joe Słowik 🌻
29 days
Good morning
Tweet media one
16
83
569
@jfslowik
Joe Słowik 🌻
3 years
Felt cute, might delete later
Tweet media one
13
101
555
@jfslowik
Joe Słowik 🌻
2 years
Get ready for Vegas, #infosec !
15
75
536
@jfslowik
Joe Słowik 🌻
4 years
Current state of #infosec :
Tweet media one
16
61
527
@jfslowik
Joe Słowik 🌻
2 years
Paying for every employee to have a @Yubico : "Oh nos, too expensive!" Spending for a phishing 'test' that engenders distrust and malice: PRICELESS
13
90
517
@jfslowik
Joe Słowik 🌻
1 year
Person who pays someone else to cook all meals, do all household tasks, and has other people care for his kids says WFH is too luxurious for the rest of us.
23
58
507
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
6
73
509
@jfslowik
Joe Słowik 🌻
3 months
Today's the day
Tweet media one
10
61
498
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
7
92
487
@jfslowik
Joe Słowik 🌻
4 years
Tweet media one
16
106
487
@jfslowik
Joe Słowik 🌻
3 years
Am I doing this right?
Tweet media one
41
147
490
@jfslowik
Joe Słowik 🌻
2 years
Yep
Tweet media one
24
51
478
@jfslowik
Joe Słowik 🌻
3 years
IETF: "Hey, let's make 127.0.0.0/8 routable" IPv6 Nerds:
9
84
464
@jfslowik
Joe Słowik 🌻
2 years
Dude wants to act like implementing rsync on NSAnet was a big fuckin deal 😂
Tweet media one
47
22
458
@jfslowik
Joe Słowik 🌻
3 years
Tweet media one
12
67
459
@jfslowik
Joe Słowik 🌻
3 years
Tweet media one
15
90
450
@jfslowik
Joe Słowik 🌻
4 years
Jobs you don't want: 1. Defense against the dark arts instructor 2. No. 2 person in al Qaeda 3. CISO
20
45
448
@jfslowik
Joe Słowik 🌻
8 months
"scanned with the free version of Malwarebytes"
7
15
458
@jfslowik
Joe Słowik 🌻
2 years
I made a handy flow-chart if your CISO/leadership is asking what you're doing/what's the risk of the current conflict in Ukraine for your own organization:
Tweet media one
12
115
442
@jfslowik
Joe Słowik 🌻
4 years
Live view of USG cyber cooperation and coordination efforts:
Tweet media one
24
74
428
@jfslowik
Joe Słowik 🌻
2 years
11
91
423
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
51
51
416
@jfslowik
Joe Słowik 🌻
4 years
Tier 2 analysis:
Tweet media one
7
61
411
@jfslowik
Joe Słowik 🌻
5 months
Tweet media one
8
38
404
@jfslowik
Joe Słowik 🌻
3 years
Tweet media one
19
58
394
@jfslowik
Joe Słowik 🌻
7 months
Tweet media one
13
60
399
@jfslowik
Joe Słowik 🌻
4 years
Tweet media one
14
45
391
@jfslowik
Joe Słowik 🌻
2 years
You don't need to be part of the #infosec "in crowd" to matter in #cybersecurity . I'm not a member. I just post shit memes and publish content, but I don't get invites to double secret handshake clubs. Do you, do it well, and things will work out.
25
40
382
@jfslowik
Joe Słowik 🌻
2 years
1. I'm ok. 2. Need to make some changes. 3. Likely will be quiet for a bit.
40
2
382
@jfslowik
Joe Słowik 🌻
2 years
KiwiFarms, a terrible hellhole of intolerance and hate, is doxxing folks who speak out against @Cloudflare hosting them. If we all speak out, Cloudflare can't ignore us and the trolls can't keep up. #infosec #dfir #cti #cybersecurity
10
115
375
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
6
71
383
@jfslowik
Joe Słowik 🌻
3 years
In 1995, cyber war was coming!
Tweet media one
22
76
386
@jfslowik
Joe Słowik 🌻
1 year
Tweet media one
6
41
376
@jfslowik
Joe Słowik 🌻
3 years
IF(Registrar==NameCheap && ISP==DigitalOcean) THEN Domain==RedTeam && Action.YeetIntoSun
12
52
372
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
13
41
361
@jfslowik
Joe Słowik 🌻
3 years
Commercial #CTI
Tweet media one
18
37
360
@jfslowik
Joe Słowik 🌻
2 years
Figured I might as well save this
Tweet media one
22
32
353
@jfslowik
Joe Słowik 🌻
3 years
One thing that continues to add complexity to #log4j discussions is that the external-facing server receiving the exploit attempt is NOT NECESSARILY the server exploited depending on remote logging, etc.
Tweet media one
5
136
356
@jfslowik
Joe Słowik 🌻
4 years
Tweet media one
15
61
354
@jfslowik
Joe Słowik 🌻
3 years
When a pentest goes sideways and gets reported as a critical infrastructure incident:
Tweet media one
8
32
339
@jfslowik
Joe Słowik 🌻
4 years
Bold move
Tweet media one
20
63
334
@jfslowik
Joe Słowik 🌻
4 years
Tweet media one
8
66
347
@jfslowik
Joe Słowik 🌻
4 years
"Do you list certs on your CV?" Yeah, I list the ones I've earned even if they're not "current" because fuck those orgs for extorting money from me to indicate I'm still "good" on their standard given the shitshow that is CPE verification.
29
23
339
@jfslowik
Joe Słowik 🌻
2 years
I'm sorry, Zoomers
Tweet media one
11
66
337
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
8
54
321
@jfslowik
Joe Słowik 🌻
4 years
Mindmap YOLO on RU-linked threat groups:
Tweet media one
16
63
326
@jfslowik
Joe Słowik 🌻
3 years
"The role is remote until pandemic measures are rescinded, at which time the position requires being onsite." Bitch if the job can be done fully remote for about a year (and counting) why do you need people to come back to the office???
25
42
332
@jfslowik
Joe Słowik 🌻
3 years
Meanwhile, in #offsec
Tweet media one
5
64
328
@jfslowik
Joe Słowik 🌻
3 years
Overheard: 'why does MSFT insist on saying "human operated ransomware" - like what the fuck else operates it, penguins?'
38
19
327
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
5
35
316
@jfslowik
Joe Słowik 🌻
4 years
One minor bit of news on a big day during a big week in #ICS security - today is my last day at @DragosInc ! After a fun and immensely rewarding 3.5+ years, I'm shifting flags to @DomainTools to continue my journey punching bad guys in the cybers!
75
7
315
@jfslowik
Joe Słowik 🌻
2 years
Serious hive mind question - what has Elon Musk actually, directly, personally done that's been interesting or innovative, other than throwing (largely preexisting) money at a lot of technical innovators who seem to remain anonymous?
49
31
309
@jfslowik
Joe Słowik 🌻
2 years
Overheard at #RSAC2022 : "RSA just stands for RSA, it doesn't mean anything" 😬
43
23
308
@jfslowik
Joe Słowik 🌻
1 year
"Debating" this dipstick is like playing chess with a pigeon - you can play the game of your life, and the other side will just make a lot of noise, knock over the pieces, and shit all over the board.
Tweet media one
33
19
311
@jfslowik
Joe Słowik 🌻
4 years
Tech employees: "Woo remote work now I don't have to live in San Francisco!" Tech employers: "Woo remote work - now I can pay Nebraska prices for the same caliber of worker!"
Tweet media one
26
56
308
@jfslowik
Joe Słowik 🌻
2 years
What you think happens in the SCIF / How it really be
Tweet media one
Tweet media two
22
22
303
@jfslowik
Joe Słowik 🌻
4 years
Tweet media one
14
47
299
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
7
40
295
@jfslowik
Joe Słowik 🌻
3 months
So much of this right now
Tweet media one
5
66
300
@jfslowik
Joe Słowik 🌻
2 years
Tweet media one
6
60
301
@jfslowik
Joe Słowik 🌻
2 years
Raspberry Pi RF receiver, right? 😅
47
9
279
@jfslowik
Joe Słowik 🌻
3 years
OH NO YOU DIDNT
Tweet media one
34
29
286
@jfslowik
Joe Słowik 🌻
3 years
Tweet media one
6
22
282
@jfslowik
Joe Słowik 🌻
10 months
After seeing "Periwinkle Tempest:"
Tweet media one
16
38
276
@jfslowik
Joe Słowik 🌻
4 years
SOC triage:
Tweet media one
5
62
272
@jfslowik
Joe Słowik 🌻
2 months
you wouldn't last an hour in the asylum where they raised me
Tweet media one
10
37
270
@jfslowik
Joe Słowik 🌻
2 years
VULN 👏 SCANNING 👏 TRIGGERING 👏 A 👏 DETECTION 👏 IS 👏 NOT 👏 A 👏 FALSE 👏 POSITIVE
21
21
271
@jfslowik
Joe Słowik 🌻
3 years
Tweet media one
9
27
269
@jfslowik
Joe Słowik 🌻
4 years
Seeing 127.0.0.1 in an IOC list:
23
44
265
@jfslowik
Joe Słowik 🌻
5 years
If you are in #threatintelligence and have not seen the following at least once, you have homework to do: 1. Sneakers 2. Burn After Reading 3. The Men who Stare at Goats (the book is fun too) 4. Fletch (again, the books are good too)
8
37
265
@jfslowik
Joe Słowik 🌻
3 years
Before I get another reply explaining this: 1: yes, Dr. Ryan was a successful surgeon and Jack supposedly made a ton of money on Wall St. 2: yes, I've read the books 3: this was a joke!!!
16
4
259
@jfslowik
Joe Słowik 🌻
3 years
Breaking Bad 2: former national lab infosec worker in New Mexico decides "fuck this" after yet another ransomware engagement, uses knowledge of legitimate rootkits (EDR) to build a new family of access tools targeting Russian government and commercial organizations.
22
13
264
@jfslowik
Joe Słowik 🌻
2 years
Once upon a time, when I worked a certain watch floor, we used a 🔥 icon to track the Kuznetsov when it was (rarely) underway since the damn thing kept catching on fire. Damn thing might as well have burned coal in its boilers.
Tweet media one
8
19
259
@jfslowik
Joe Słowik 🌻
4 years
When someone asks how to get from a SHA256 to an MD5 hash without having the file (I'm going to get murdered for this)
Tweet media one
12
25
261