Settings
Light Theme
Dark Theme
Explicit

Episode Thirty-Eight - The Tool Fool

Episode Thirty-Eight - The Tool Fool
Mar 15, 2021 · 1h 2m

A fool is a person who acts unwisely or imprudently. A Tool Fool is someone who unwisely or imprudently loves tools. They don’t necessarily love the tools they have; they...

show more
A fool is a person who acts unwisely or imprudently. A Tool Fool is someone who unwisely or imprudently loves tools. They don’t necessarily love the tools they have; they just love tools. The more tools, the better.

Don’t be offended. We’re all fools from time to time. When it comes to our information security, we do the best we know how. We don’t intentionally act the fool, but when it comes to our tools, too many of us ARE the fool.

Don’t be the Tool Fool!

Here’s are 10 things about the Tool Fool:
1. Brags about their tools, but they don’t know how to use them.
2. Brags about a big budget, but they can’t justify it.
3. Thinks “tool first” instead of a “needs first”.
4. Thinks tools fix process.
5. Thinks tools makes problems easier to solve.
6. Likes easy but confuses “easy” with “simple”.
7. Has tools they don’t know they have.
8. Advocates for tools because fools like company.
9. Oblivious to they’re most significant risks.
10. Knows how to use some of their tools but won’t to use them well*.

The Tool Fool costs the organization more than they know. Tool Fools waste money on tools they don’t need, don’t understand, and/or can’t use. The Tool Fool can convince themselves that their tools will keep them secure when the opposite is true. Worst yet, the Tool Fool’s work has convinced management of the same.

The Tool Fool has a false sense of security. The Tool Fool makes security worse.

The Tool Fool is the topic for this Thursday’s (3/4) Security Shit Show with Chris, Evan, and Ryan. Be sure to catch the show LIVE on YouTube at 10pm/2200 CST!

*This is relevant to a dialog between Senator Wyden (D-OR) and witnesses (Kevin Mandia, Sudhakar Ramakrishna, Brad Smith, and George Kurtz) in the recent open hearing, “Hearing on the Hack of U.S. Networks by a Foreign Adversary” before the U.S. Senate Intelligence Committee (2/23). This particular exchange happens at 1:22:08 in the recording here: https://www.intelligence.senate.gov/hearings/open-hearing-hearing-hack-us-networks-foreign-adversary, and has been transcribed here: https://evanfrancen.com/unsecurity-episode-121-show-notes/
show less
Information
Author The InfoSec Mission
Website -
Tags

Looks like you don't have any active episode

Browse Spreaker Catalogue to discover great new content

Current

Looks like you don't have any episodes in your queue

Browse Spreaker Catalogue to discover great new content

Next Up

Episode Cover Episode Cover

It's so quiet here...

Time to discover new episodes!

Discover
Your Library
Search