Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Comments
Name That Toon: SOC Puppets
Threaded  |  Newest First  |  Oldest First
Marilyn Cohodas
67%
33%
Marilyn Cohodas,
User Rank: Strategist
9/13/2019 | 2:54:45 PM
Write a Caption, Win a Prize
We've got a new caption contest! Enter and win a $$25 Amazon gift card.
StephenP787
86%
14%
StephenP787,
User Rank: Strategist
9/16/2019 | 2:56:19 PM
Re: Write a Caption, Win a Prize
This is not what I had expected when we discussed preparing for the upcoming SOC 2 Assessment.
vantag
20%
80%
vantag,
User Rank: Apprentice
9/20/2019 | 9:32:19 AM
Re: Write a Caption, Win a Prize
"He's too shy to invite me out face to face!"
archeanchaos
25%
75%
archeanchaos,
User Rank: Apprentice
10/2/2019 | 3:18:03 PM
Re: Write a Caption, Win a Prize
George asked for advice on social engineering techniques. I told him the best methods involve something you know.
danielcummins
25%
75%
danielcummins,
User Rank: Apprentice
9/16/2019 | 8:02:33 AM
name that toon entry
Ever since his cryptography class, he's been obsessed with Alice and Bob.
blightsey3921
50%
50%
blightsey3921,
User Rank: Strategist
9/16/2019 | 9:59:19 AM
shallow fake
His project hasn't quite polished enough to be called a "deep fake" yet.
REISEN1955
0%
100%
REISEN1955,
User Rank: Ninja
9/18/2019 | 12:47:49 PM
Re: shallow fake
It was only then that Sam realized his friend had taken private messaging to a whole new level. 
bbbarrier
0%
100%
bbbarrier,
User Rank: Apprentice
9/16/2019 | 2:24:43 PM
Puppet show exploit
New social engineering technique spotted in the wild. 

 

-bbbarrier

 

 
DarkReading24
20%
80%
DarkReading24,
User Rank: Apprentice
9/17/2019 | 7:49:40 AM
Hijacked
Someone hijacked Tim's streaming accounts over the weekend. Even if he somehow gets control again, I think the damage has already been done.
larriee
0%
100%
larriee,
User Rank: Guru
9/17/2019 | 11:22:35 AM
caption
Doug's penetration testing skills were his most endorsed on LinkedIn.
reg2385
25%
75%
reg2385,
User Rank: Apprentice
9/17/2019 | 11:28:04 AM
Cartoon contest
Since they removed my side cube wall, I feel like i am under survellance.
PajamaSam
0%
100%
PajamaSam,
User Rank: Strategist
9/17/2019 | 2:50:52 PM
Sock Puppets
He still insists that security by obscurity is the way to go.
Tempest2004
0%
100%
Tempest2004,
User Rank: Ninja
9/17/2019 | 5:11:24 PM
sock puppets
Fred has learned that his co-works were more likely to listen to security threat diatribes from his sock puppets.
Tempest2004
0%
100%
Tempest2004,
User Rank: Ninja
9/17/2019 | 5:27:52 PM
sock puppets
Fred's sock puppets could have frank security conversations with management without the risk of being fired.
Deadsnott
0%
100%
Deadsnott,
User Rank: Guru
9/18/2019 | 9:44:24 AM
SOCKS puppets
I think he may have misunderstood when I suggested using a SOCKS proxy to bypass the firewall.
Tempest2004
0%
100%
Tempest2004,
User Rank: Ninja
9/18/2019 | 4:12:33 PM
sock puppets
Because Sock Puppets don't get fired for being brutally honest describing the weaknesses of existing security controls.
packetnarc
0%
100%
packetnarc,
User Rank: Apprentice
9/27/2019 | 11:57:22 AM
Sock Puppet Social Engineer
Our new Social Engineering campaign sure has brought Allen out of his shell. I just hope he washed them first.
kratiw
0%
100%
kratiw,
User Rank: Strategist
9/19/2019 | 10:10:10 AM
Legal!
I don't think legal is taking our concerns about identity theft seriously.
jd.daniels
40%
60%
jd.daniels,
User Rank: Apprentice
9/19/2019 | 1:10:29 PM
Creepy
Can we make sure my computer's camera is off? I feel like I am being watched.
Hazbro
0%
100%
Hazbro,
User Rank: Apprentice
9/22/2019 | 5:13:13 AM
Cartoon Caption Contest
I wish they'd put a sock in it.
thekob96
25%
75%
thekob96,
User Rank: Apprentice
9/25/2019 | 2:24:04 PM
First day on the job
I don't want to alarm you... but being that you are the first female software engineer that our company has hired...?  You might find that there are those within your department who are a little curious about your presence here.
harrismc
67%
33%
harrismc,
User Rank: Apprentice
9/25/2019 | 2:29:22 PM
Soc puppets
That is not what I had in mind when we asked for a  2 SOC assessment
HPERPER
0%
100%
HPERPER,
User Rank: Strategist
9/25/2019 | 3:23:54 PM
Sock Puppets
Well..they match, so I guess we passed.  How do we prevent the constant oversight?
Doubleton
0%
100%
Doubleton,
User Rank: Apprentice
9/26/2019 | 8:30:42 AM
Identity theft.
His resume said "Identity Theft Expert."
jojoh
60%
40%
jojoh,
User Rank: Apprentice
9/26/2019 | 3:45:04 PM
Monitor This
It appears our SOC monitoring tools are up and running.
reg2385
0%
100%
reg2385,
User Rank: Apprentice
9/27/2019 | 12:35:29 PM
Cartoon contest
I feel harrassed. They keep saying to each other; Sock-it-to-me! Sock-it-to-me! Sock-it-to-me!
Koalaking
40%
60%
Koalaking,
User Rank: Strategist
9/27/2019 | 3:55:25 PM
Replacement CISO
The last CISO moved us to the cloud and did not secure S3 buckets.  I would like to introduce you to his replacement, Socky McSockster.
amaguhn
25%
75%
amaguhn,
User Rank: Strategist
10/1/2019 | 7:49:25 AM
Security Training
The security training budget has been hit hard this year.
sdenrich
0%
100%
sdenrich,
User Rank: Guru
10/3/2019 | 1:49:37 PM
SOC Puppets
"Marge, I think Larry is is trying to spoof our ID's again"
REISEN1955
0%
100%
REISEN1955,
User Rank: Ninja
10/3/2019 | 3:06:33 PM
Re: SOC Puppets
Norm was not taking the SOC analyst training very well.
lakers85
25%
75%
lakers85,
User Rank: Strategist
10/4/2019 | 2:15:12 PM
Lack of Cybersecurity Talent is a Systemic Issue
Joan: "I thought our CISO was kidding when he said HR placed 2 new interns in the Security Department to help monitor all operations and infrastructure."

Pete: "Well, he did hit the 'easy button'."

Both: "hahahaha"
matthewkmiller
25%
75%
matthewkmiller,
User Rank: Strategist
10/7/2019 | 1:29:16 PM
SOC Sock Puppets
The executive spoof training technique needed work.
matthewkmiller
33%
67%
matthewkmiller,
User Rank: Strategist
10/7/2019 | 1:31:41 PM
SOC Sock Puppets
The new hire misunderstood the job description for the SOC position.
havancourt
33%
67%
havancourt,
User Rank: Apprentice
10/7/2019 | 4:31:35 PM
caption - The auditors are performing a SOX review
The auditors are performing a SOX review
mikeoke_2k4
0%
100%
mikeoke_2k4,
User Rank: Strategist
10/8/2019 | 8:52:19 AM
SOC Puppets
Billy denied the rumour that outsourcing their SIEM to a third party would turn the Security department into SOC Puppets
maramtunis
0%
100%
maramtunis,
User Rank: Apprentice
10/9/2019 | 10:07:30 AM
SOC puppets
Do you SMELLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLL the SOX coming! ( Only in WWE restling voice)
maramtunis
0%
100%
maramtunis,
User Rank: Apprentice
10/9/2019 | 10:08:12 AM
SOC puppets
Do you SMELLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLLL the SOX coming! ( Only in WWE restling voice)
Boiler95
33%
67%
Boiler95,
User Rank: Apprentice
10/10/2019 | 4:07:55 PM
SOC (Summer of Code)
"I don't think Jimmy understands what the Summer of Code is."
Hudey123
67%
33%
Hudey123,
User Rank: Apprentice
10/11/2019 | 11:28:27 AM
SOC Puppets caption:
We hired him because his resume said he had expert level Puppet skills. We're waiting for lunch so he can show off his Chef skills before HR starts the termination process.
underestimatess
100%
0%
underestimatess,
User Rank: Apprentice
10/16/2019 | 1:23:18 PM
Sock Puppet Cartoon Contest
Day 34: They still haven't noticed we replaced the entire SOC with socks.
jevans1230
50%
50%
jevans1230,
User Rank: Strategist
10/17/2019 | 9:42:27 AM
Shoulder Surfing
The old using of sock puppets for Shoulder Surfing technique. 


Data Leak Week: Billions of Sensitive Files Exposed Online
Kelly Jackson Higgins, Executive Editor at Dark Reading,  12/10/2019
Lessons from the NSA: Know Your Assets
Robert Lemos, Contributing Writer,  12/12/2019
4 Tips to Run Fast in the Face of Digital Transformation
Shane Buckley, President & Chief Operating Officer, Gigamon,  12/9/2019
Register for Dark Reading Newsletters
White Papers
Video
Cartoon
Current Issue
The Year in Security: 2019
This Tech Digest provides a wrap up and overview of the year's top cybersecurity news stories. It was a year of new twists on old threats, with fears of another WannaCry-type worm and of a possible botnet army of Wi-Fi routers. But 2019 also underscored the risk of firmware and trusted security tools harboring dangerous holes that cybercriminals and nation-state hackers could readily abuse. Read more.
Flash Poll
Rethinking Enterprise Data Defense
Rethinking Enterprise Data Defense
Frustrated with recurring intrusions and breaches, cybersecurity professionals are questioning some of the industrys conventional wisdom. Heres a look at what theyre thinking about.
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2019-19807
PUBLISHED: 2019-12-15
In the Linux kernel before 5.3.11, sound/core/timer.c has a use-after-free caused by erroneous code refactoring, aka CID-e7af6307a8a5. This is related to snd_timer_open and snd_timer_close_locked. The timeri variable was originally intended to be for a newly created timer instance, but was used for ...
CVE-2014-8650
PUBLISHED: 2019-12-15
python-requests-Kerberos through 0.5 does not handle mutual authentication
CVE-2014-3536
PUBLISHED: 2019-12-15
CFME (CloudForms Management Engine) 5: RHN account information is logged to top_output.log during registration
CVE-2014-3643
PUBLISHED: 2019-12-15
jersey: XXE via parameter entities not disabled by the jersey SAX parser
CVE-2014-3652
PUBLISHED: 2019-12-15
JBoss KeyCloak: Open redirect vulnerability via failure to validate the redirect URL.