Silicon Shecky

Infosec Practitioner

  • About
  • Categories
    • General
    • Computers
    • Software
    • Rants
    • Security
    • Internet/Music
    • Reviews
    • Microsoft
    • Hardware
    • Mobile Computing
  • Links
    • Infosec
      • Burbsec
      • Infosec Exchange Mastodon
      • Hacks4Pancakes Blog
      • Krebs On Security
      • Bleeping Computer
  • Archives

Connect

  • Bluesky
  • LinkedIn
  • Mastodon
  • RSS
  • Twitter

[footer_backtotop]

Copyright © 2025 ·Sixteen Nine Pro Theme · Genesis Framework by StudioPress · WordPress

Line in the… silicon

February 15, 2018 By Michael Kavka Leave a Comment

We have a problem. It is a big problem. We want maturity. Maturity of the security scene. Mature security postures. All while we tend to be immature gits. This is a big problem.

Over the last week there was yet another big to do in our community, and a few more minor ones. Lets start off though by defining our community. The infosec community at large is not a be all end all, in fact as Jack Daniel mentioned in a twitter thread

I’ve given this a lot of thought and I have long used “communities”, plural. I think of us as more in the nations/tribes/clans/families model, but with the profound complication of significant overlap in some areas.

— Jack Daniel (@jack_daniel) February 13, 2018


Jack is of course correct. We have splinters, as large groups usually do, back down to more manageable sizes. Each of us in many different groups. Some are maturing faster than others, some are not.

I bring this up because even with different groups, we still tend to have an overall gang mentality. We pile on something we do not like until we beat it to death. Sometimes, like Trevor, it was meant to be in fun. Sometimes, Like with the case of a company slamming a security researcher, we go too far. There is a line that we should not be stepping over if we are mature. Complain about stuff, yes, but to what degree? A company issues an apology, fires the offending employee and wants to go on with what it does. Do we punish the rest of that companies employees by constantly berating them? Do they make a decent tool that we could use, but now won’t because of a mistake? When do we stop complaining and berating? When do we start acting mature? You know being mature gets you more respect than throwing an ongoing temper tantrum, and that is something parents try to teach their children at a young age. We want to be taken seriously, and we should be, but it is harder to do that when we act like over privileged spoiled brats, and we do act like that at times.

Now back to the statement by Jack. There are people, like Jack, or Lesley (@hacks4pancakes) and may others who we look to as leaders. They are respected by many if not all of our sub communities, and see this issue. Some of the sub communities take this to heart and others do not. We need all of the communities to start thinking more maturely, start using more honey than bitters to get our points across, and stop with the gang mentality. We want to be taken seriously, but we can’t even take ourselves seriously. Look at the “rockstars” that slam people for getting certs. Look at how we slam each other for thinking differently, for having opinions that do not agree with our own. Do we act mature and discuss or do we berate?

It is not easy to change, we know that because we are trying to change corporate cultures to being more secure. We have a chance right now to show them that we accept change, and change ourselves and our attitudes to something more mature. The choice is in each one of our hands.

Filed Under: Rants Tagged With: InfoSec

Leave a Reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

RSS Taggart Institute Intel Feed

  • Are You Protecting Yourself from Deepfakes? Take This Quick Quiz. October 27, 2025 Shanan Winters
  • Losing the Swing States October 27, 2025 Richard Fontaine
  • UN Cybercrime Treaty wins dozens of signatories, to go with its many critics October 27, 2025 Simon Sharwood
  • Uncovering Qilin attack methods exposed through multiple cases October 27, 2025 Takahiro Takeda
  • ISC Stormcast For Monday, October 27th, 2025 https://isc.sans.edu/podcastdetail/9672, (Mon, Oct 27th) October 27, 2025
  • Shaq's new ride gets jaq'ed in haq attaq October 26, 2025 Brandon Vigliarolo
  • The Kavanaugh stop, 50 days later October 26, 2025 Chris Geidner
  • Kaitai Struct WebIDE, (Sun, Oct 26th) October 26, 2025
  • [REVIVE-SA-2025-002] Revive Adserver Vulnerability October 26, 2025
  • [REVIVE-SA-2025-001] Revive Adserver Vulnerability October 26, 2025

Browse by tags

Active Directory Android Antivirus Apple Beta Chrome Computers Exchange Exchange 2007 Firefox General Thoughts Google InfoSec Internet Explorer iOS iPad IT Linux Mac Malware Microsoft OS OSx Patches Rants SBS SBS 2008 Security Security Patches Server SMB Software Support Surface TechEd Tweets Ubuntu Verizon Virus Vista vulnerabilities Windows Windows 7 Windows 8 XP